High severity8.8NVD Advisory· Published May 22, 2026· Updated Jul 23, 2026
CVE-2026-35430
CVE-2026-35430
Description
Authorization bypass through user-controlled key in Azure Privileged Identity Management (PIM) allows an authorized attacker to elevate privileges over a network.
Affected products
2cpe:2.3:a:microsoft:azure_privileged_identity_management:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:azure_privileged_identity_management:-:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-35430nvdVendor Advisory
News mentions
0No linked articles in our index yet.