May 2026: Azure Logic Apps Elevation of Privilege Vulnerability
CVE-2026-42823 Published on May 12, 2026

Azure Logic Apps Elevation of Privilege Vulnerability
Improper access control in Azure Logic Apps allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2026-42823 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2026-42823

Want to know whenever a new CVE is published for Microsoft Azure Logic Apps? stack.watch will email you.

 

Affected Versions

Microsoft Azure Logic Apps Version - is affected by CVE-2026-42823