CVE-2026-68791: Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network.

Added to the CISA Known Exploited Vulnerabilities catalog on 17 Sep 2026. Vendor: AI/ML. Product: machine learning. CVSS score: 8.6.

Incorrect authorization in Azure Machine Learning allows an unauthorized attacker to disclose information over a network.

Required action: Review and patch if applicable to your AI infrastructure.