Improper Authentication in Azure Key Vault by Microsoft
CVE-2026-62825

10CRITICAL

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
24 July 2026

What is CVE-2026-62825?

An improper authentication vulnerability in Azure Key Vault can allow unauthorized attackers to gain elevated privileges over a network, potentially compromising sensitive information and leading to serious security breaches. Organizations using Azure Key Vault should assess their security posture and implement appropriate measures in response to this vulnerability. Prompt patching and enhanced monitoring are advised to mitigate risks associated with this flaw.

Affected Version(s)

Azure Key Vault -

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.