CyberICT

CVE-2026-63508

Microsoft · Published August 6, 2026

CVSS v3.1

CRITICAL
Patch availableGet patch

Description

Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability. Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network.

Affected Products

  • Microsoft Planetary Computer Pro (GeoCatalog)

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N/E:U/RL:O/RC:C