Jun 2026: Azure Bot Service Elevation of Privilege Vulnerability
CVE-2026-32174 Published on June 18, 2026

Azure Bot Service Elevation of Privilege Vulnerability
Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

What is an authentification Vulnerability?

When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.

CVE-2026-32174 has been classified to as an authentification vulnerability or weakness.


Products Associated with CVE-2026-32174

Want to know whenever a new CVE is published for Microsoft Azure Ai Bot Service? stack.watch will email you.

 

Affected Versions

Microsoft Azure AI Bot Service Version - is affected by CVE-2026-32174