High severity8.8NVD Advisory· Published Mar 10, 2026· Updated Jun 17, 2026
CVE-2026-23654
CVE-2026-23654
Description
Dependency on vulnerable third-party component in GitHub Repo: zero-shot-scfoundation allows an unauthorized attacker to execute code over a network.
Affected products
3- cpe:2.3:a:microsoft:zero-shot-scfoundation:*:*:*:*:*:*:*:*Range: <0.1.1
- Microsoft/GitHub Repo: Zero Shot scFoundationv5Range: 1.0.0
Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23654nvdVendor Advisory
News mentions
0No linked articles in our index yet.