All CVEs
Vulnerability intelligence

CVE-2026-0234

CWE-347

An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during integration of Microsoft Teams that enables an unauthenticated user to access and modify protected resources.

CVSS Score
High
EPSS — Exploit Probability
0.2%
Riskier than 14% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
unknown
Check vendor advisories
NVD entry

1 article across 1 outlet · first covered Apr 9, 2026 · latest Apr 9, 2026

Coverage timeline