EXPOSURES › CVE-2026-0274
CVE-2026-0274
CRITICAL
DETAIL
SourceNVD · cve
Published2026-06-10
CVSS9.1
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2026-0274 ↗
SHAME 35/100
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.
▸ RECOMMENDED ACTION Critical severity — schedule patching of the affected products.
PLAYERS IMPLICATED
DESCRIPTION
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.