Impact
The vulnerability is an improper access control in Azure Logic Apps that permits an authorized attacker to read data over a network.
Affected Systems
Microsoft Azure Logic Apps is the affected product. No specific version details are supplied, so all current instances may be at risk.
Risk and Exploitability
The CVSS score of 9.6 indicates a high severity. EPSS data is not available, yet the high CVSS suggests a non‑negligible exploitation probability. The vulnerability is not listed in the CISA KEV catalog, but the attack vector is likely network‑based and requires an account with sufficient privileges. An attacker could expose confidential business data or integration details by accessing the app through its exposed endpoints.
OpenCVE Enrichment