CVE-2026-21515

· NIST NVD ↗

Exposure of sensitive information to an unauthorized actor in Azure IOT Central allows an authorized attacker to elevate privileges over a network.

CRITICAL
CVSS severity
9.9
CVSS base score
2026-04-24
Published

CWE codes

CWE-200

Affected products

microsoft:azure_iot_central

Sources