← Back to browse · API

CVE-2026-40411

Severity
CRITICAL
CVSS
9.9
EPSS
0.00525
Risk score
39.78
CISA KEV
No
PoC
No
Published
2026-05-22
Modified
2026-08-10
First seen
2026-08-05
Aliases
EUVD-2026-31510, GHSA-G63W-3VWQ-RQW8
Products
Microsoft:Azure Virtual Network Gateway -, microsoft:azure_virtual_network_gateway
Sources
nvd CVE-2026-40411
euvd EUVD-2026-31510

Description

Improper input validation in Azure Virtual Network Gateway allows an authorized attacker to execute code over a network.

References