CVE-2026-83944: Azure Logic Apps Elevation of Privilege Vulnerability
Published Sep 17, 2026
·Updated
Azure Logic Apps Elevation of Privilege Vulnerability
Other sources
Improper access control in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
— Microsoft
Affected Software
1 affected component
Microsoft Azure Logic Apps
Event History
Sep 17, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·10:55 PM
Data Sourced
via MITRE·10:55 PM
DescriptionSeverity
Frequently Asked Questions
1
Who can exploit this vulnerability?
An unauthorized attacker can exploit it over a network. The supplied data indicates no privileges or user interaction are required.
2
What is the likely impact if exploitation succeeds?
Successful exploitation allows elevation of privilege. The provided severity vector indicates high confidentiality and integrity impact, with no availability impact stated.
3
How difficult is exploitation expected to be?
The supplied vector rates attack complexity as low and marks exploit maturity as unproven. This indicates exploitation does not require complex conditions, but the data does not confirm a publicly demonstrated exploit.