CyberICT

CVE-2026-21228

Microsoft · Published February 10, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Azure Local Remote Code Execution Vulnerability. Improper certificate validation in Azure Local allows an unauthorized attacker to execute code over a network.

Affected Products

  • Azure Local

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C