Posts of last 24 hours
A vulnerability classified as critical was found in Microsoft Azure Arc. This issue affects some unknown processing. The manipulation results in improper privilege management.
This vulnerability is reported as CVE-2026-65816. The attack can be launched remotely. No exploit exists.
This product is a managed service, so users do not have direct control over vulnerability countermeasures.
https://vuldb.com/vuln/394003
A vulnerability classified as critical has been found in Microsoft Azure Data Factory. This vulnerability affects unknown code. The manipulation leads to improper authorization.
This vulnerability is documented as CVE-2026-62834. The attack can be initiated remotely. There is not any exploit available.
This product is a managed service, indicating that users are not permitted to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/394002
A vulnerability described as problematic has been identified in Microsoft Azure Stack HCI. This affects an unknown part. Executing a manipulation can lead to information disclosure.
This vulnerability is registered as CVE-2026-69519. It is possible to launch the attack remotely. No exploit is available.
This product is provided as a managed service, meaning users do not have the ability to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/394001
A vulnerability marked as critical has been reported in Microsoft Azure Logic Apps. Affected by this issue is some unknown functionality. Performing a manipulation results in path traversal.
This vulnerability is cataloged as CVE-2026-69400. It is possible to initiate the attack remotely. There is no exploit available.
This product operates as a managed service, which prevents users from maintaining vulnerability countermeasures themselves.
https://vuldb.com/vuln/394000
A vulnerability labeled as problematic has been found in Microsoft Copilot. Affected by this vulnerability is an unknown functionality. Such manipulation leads to server-side request forgery.
This vulnerability is listed as CVE-2026-69855. The attack may be performed from remote. There is no available exploit.
This product is a managed service, so users are unable to manage vulnerability countermeasures on their own.
https://vuldb.com/vuln/393999
A vulnerability identified as problematic has been detected in liketrek TREK up to 3.1.2. Affected is the function findForeignLinkTarget of the file /api/trips/:tripId/files/:id/link of the component File Linking. This manipulation of the argument reservation_id/place_id/assignment_id causes authorization bypass.
This vulnerability is tracked as CVE-2026-62945. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
https://vuldb.com/vuln/393998
A vulnerability categorized as critical has been discovered in Microsoft Entra ID. This impacts an unknown function. The manipulation results in deserialization.
This vulnerability is identified as CVE-2026-69836. The attack can be executed remotely. There is not any exploit available.
This product is a managed service. It is not possible for users to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/393997
A vulnerability was found in Microsoft Fabric. It has been rated as critical. This affects an unknown function. The manipulation leads to path traversal.
This vulnerability is referenced as CVE-2026-63509. Remote exploitation of the attack is possible. No exploit is available.
This product is available as a managed service. Users are not able to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/393996
A vulnerability was found in Microsoft Partner Center. It has been declared as problematic. The impacted element is an unknown function. Executing a manipulation can lead to authorization bypass.
The identification of this vulnerability is CVE-2026-69558. The attack may be launched remotely. There is no exploit available.
This product is a managed service. This means that users are not able to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/393995
A vulnerability was found in Microsoft Azure Managed Instance for Apache Cassandra. It has been classified as very critical. The affected element is an unknown function. Performing a manipulation results in argument injection.
This vulnerability was named CVE-2026-65770. The attack may be initiated remotely. There is no available exploit.
This product is a managed service, therefore users are not responsible for maintaining vulnerability countermeasures.
https://vuldb.com/vuln/393994