EXPOSURES › CVE-2026-0234
CVE-2026-0234
CRITICAL
DETAIL
SourceNVD · cve
Published2026-04-13
CVSS9.1
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2026-0234 ↗
SHAME 35/100
An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during integration of Microsoft Teams that enables an unauthenticated user to access and modify protected resources.
▸ RECOMMENDED ACTION Critical severity — schedule patching of the affected products.
PLAYERS IMPLICATED
DESCRIPTION
An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during integration of Microsoft Teams that enables an unauthenticated user to access and modify protected resources.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.