Improper credential validation in CommvaultSecurityIQ XSOAR integration
CVE-2026-0274 Published on June 10, 2026

Cortex XSOAR: Improper Validation of Credentials in CommvaultSecurityIQ integration
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.

Vendor Advisory NVD

Timeline

Initial Publication.

Weakness Type

CWE-1390

Products Associated with CVE-2026-0274

stack.watch emails you whenever new vulnerabilities are published in Palo Alto Networks Cortex Xsiam Commvaultsecurityiq Marketplace or Palo Alto Networks Cortex Xsoar Commvaultsecurityiq Marketplace. Just hit a watch button to start following.

 
 

Affected Versions

Palo Alto Networks Cortex XSIAM CommvaultSecurityIQ Marketplace: Palo Alto Networks Cortex XSOAR CommvaultSecurityIQ Marketplace:

Exploit Probability

EPSS
0.32%
Percentile
23.05%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.