Home
HIGH: 8.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:M/U:RedDefault status
unaffected
1.1.0 (custom) before 1.2.0
affected
Default status
unaffected
1.1.0 (custom) before 1.2.0
affected
Description
An improper validation of credentials vulnerability in the CommvaultSecurityIQ integration for Cortex XSOAR and Cortex XSIAM allows an unauthenticated attacker to access and modify protected resources.
Problem types
Product status
1.1.0 (custom) before 1.2.0
1.1.0 (custom) before 1.2.0
Timeline
| 2026-06-10: | Initial Publication. |
Credits
our internal security research teams
References
security.paloaltonetworks.com/CVE-2026-0274