CVE-2026-0274
CRITICAL9.1CVSS v3
—CVSS v2
0.29%
EPSS (exploit probability)
CWE-1390CWE
Description
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.
CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected routers (0)
No routers currently mapped to this CVE in our database.