CVE-2026-57969

Summary

Missing authentication for critical function in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

Affected Software

VendorProductVersion RangeStatus
MicrosoftAzure CycleCloud 8.9.11.0.0 < 8.9.1affected

Weaknesses

  • CWE-306: CWE-306: Missing Authentication for Critical Function

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References