← back
CVE-2026-66803criticalCWE-284

Azure Cosmos DB Remote Code Execution Vulnerability

25Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 10
exploitation probability
observed exploitation
nono source reports it
Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C