Description
Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
Published: 2026-08-20
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a path traversal flaw (CWE‑22) that allows an unauthenticated attacker to reference files outside of a designated directory in Azure Logic Apps. By tricking the service into accessing an unauthorized location, the attacker can gain elevated privileges over the network, potentially compromising other connected resources or services.

Affected Systems

Microsoft Azure Logic Apps is affected. No specific product version information is available in the current advisory.

Risk and Exploitability

The CVSS base score is 9.6, placing it in the Critical severity range. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, but the attack vector is inferred to be a remote network attack that can be performed from any client with connectivity to the Logic App. Because the flaw permits privilege escalation, the impact on confidentiality, integrity, and availability is significant if an attacker can fully control the Logic App environment.

Generated by OpenCVE AI on August 21, 2026 at 00:27 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the official Azure Logic Apps update published by Microsoft as described in the MSRC advisory.
  • If the update cannot be applied immediately, restrict inbound traffic to the Logic App using Azure Network Security Groups, private endpoints, or firewall rules to limit exposure to trusted networks.
  • Review any custom connectors or code that processes file paths to ensure they are confined to approved directories and that no unvalidated path segments are accepted.

Generated by OpenCVE AI on August 21, 2026 at 00:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 24 Aug 2026 18:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:microsoft:azure_logic_apps:-:*:*:*:*:*:*:*

Fri, 21 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 20 Aug 2026 22:00:00 +0000

Type Values Removed Values Added
Description Improper limitation of a pathname to a restricted directory ('path traversal') in Azure Logic Apps allows an unauthorized attacker to elevate privileges over a network.
Title Azure Logic Apps Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft azure Logic Apps
Weaknesses CWE-22
CPEs cpe:2.3:a:microsoft:azure_logic_apps:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft azure Logic Apps
References
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Azure Logic Apps
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-09T19:38:37.347Z

Reserved: 2026-08-03T20:57:58.962Z

Link: CVE-2026-69400

cve-icon Vulnrichment

Updated: 2026-08-21T15:44:32.325Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-20T22:17:59.783

Modified: 2026-08-24T18:01:36.210

Link: CVE-2026-69400

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-21T00:45:06Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')