
CVE-2026-32174 Improper authentication in Azure Bot Service allows an authorized attacker to elevate privileges over a network. https://www.cve.org/CVERecord?id=CVE-2026-32174
Post summary
CVE‑2026‑32174 is an authentication flaw that permits privilege escalation in Azure Bot Service; no exploit PoC, tool, patch, or active exploitation is reported.


