ctipilot.ch

Microsoft Azure Local Disconnected Operations (ALDO) CVE-2026-42822 — CVSS 10.0 unauthenticated network EoP; MSRC Exploitation More Likely; only air-gapped Azure Local stacks need action

cve · item:azure-local-disconnected-operations-cve-2026-42822-cvss-10-0

Coverage timeline
1
first 2026-05-21 → last 2026-05-21
Briefs
1
1 distinct
Sources cited
134
55 hosts
Sections touched
1
trending_vulns
Co-occurring entities
0
no co-occurrence

Story timeline

  1. 2026-05-21CTI Daily Brief — 2026-05-21
    trending_vulnsFirst coverage. CVSS 10.0 (AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H). Cloud-managed Azure customers protected; only air-gapped / disconnected manually-operated Azure Local stacks need manual upgrade to ALDO v2604+.

Where this entity is cited

  • trending_vulns1

Source distribution

  • attack.mitre.org21 (16%)
  • microsoft.com11 (8%)
  • msrc.microsoft.com10 (7%)
  • bleepingcomputer.com8 (6%)
  • thehackernews.com8 (6%)
  • github.com5 (4%)
  • helpnetsecurity.com4 (3%)
  • security-hub.ncsc.admin.ch4 (3%)
  • other63 (47%)

External references

NVD · cve.org · CISA KEV

All cited sources (134)

Items in briefs about Microsoft Azure Local Disconnected Operations (ALDO) CVE-2026-42822 — CVSS 10.0 unauthenticated network EoP; MSRC Exploitation More Likely; only air-gapped Azure Local stacks need action

No parsed item heading or body matches this entity yet. Items match by exact CVE id (for CVE entities), by lead-segment substring of the title in the item heading or body, or by a distinctive anchor token from the title appearing in the item heading. Coverage that lives inside a broader section (no per-item heading) is captured by the Story timeline above.