Argument Injection Flaw in Azure Managed Instance for Apache Cassandra
CVE-2026-65770

10CRITICAL

What is CVE-2026-65770?

An argument injection flaw exists in Azure Managed Instance for Apache Cassandra, allowing unauthorized attackers to execute arbitrary code over a network. This vulnerability stems from improper neutralization of command argument delimiters, creating a critical security exposure. Attackers can exploit this weakness to gain control over targeted systems, highlighting the urgent need for updates and mitigation strategies.

Affected Version(s)

Azure Managed Instance for Apache Cassandra -

References

CVSS V3.1

Score:
10
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.