9.1

CVSS3.1

CVE-2026-32211 - Azure MCP Server Information Disclosure Vulnerability

Missing authentication for critical function in Azure MCP Server allows an unauthorized attacker to disclose information over a network.

๐Ÿ“… Published: April 2, 2026, 11:27 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 9:20 p.m.

8.6

CVSS3.1

CVE-2026-32173 - Azure SRE Agent Information Disclosure Vulnerability

Improper authentication in Azure SRE Agent allows an unauthorized attacker to disclose information over a network.

๐Ÿ“… Published: April 2, 2026, 11:27 p.m. ๐Ÿ”„ Last Modified: April 24, 2026, 12:51 p.m.

10

CVSS3.1

CVE-2026-33105 - Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability

Improper authorization in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.

๐Ÿ“… Published: April 2, 2026, 11:26 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 9:20 p.m.

9.6

CVSS3.1

CVE-2026-26135 - Azure Custom Locations Resource Provider (RP) Elevation of Privilege Vulnerability

Server-side request forgery (ssrf) in Azure Custom Locations Resource Provider (RP) allows an authorized attacker to elevate privileges over a network.

๐Ÿ“… Published: April 2, 2026, 11:26 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 9:20 p.m.

10

CVSS3.1

CVE-2026-33107 - Azure Databricks Elevation of Privilege Vulnerability

Server-side request forgery (ssrf) in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.

๐Ÿ“… Published: April 2, 2026, 11:26 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 9:20 p.m.

10

CVSS3.1

CVE-2026-32213 - Azure AI Foundry Elevation of Privilege Vulnerability

Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

๐Ÿ“… Published: April 2, 2026, 11:26 p.m. ๐Ÿ”„ Last Modified: April 10, 2026, 9:20 p.m.

7.1

CVSS4.0

CVE-2022-4986 - Hirschmann EagleSDV Denial of Service via TLS

Hirschmann EagleSDV version 05.4.01 prior to 05.4.02 contains a denial-of-service vulnerability that causes the device to crash during session establishment when using TLS 1.0 or TLS 1.1. Attackers can trigger a crash by initiating TLS connections with these protocol versions to disrupt service avaโ€ฆ

๐Ÿ“… Published: April 2, 2026, 9:52 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 7:55 a.m.

0.0

CVE-2026-35481 -

Further research determined the issue does not satisfy the assignment rules.

๐Ÿ“… Published: April 2, 2026, 8:49 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 3:17 p.m.

7.1

CVSS4.0

CVE-2024-14033 - Hirschmann EagleSDV Denial of Service via TLS

Hirschmann Industrial IT products (BAT-R, BAT-F, BAT450-F, BAT867-R, BAT867-F, WLC, BAT Controller Virtual) contain a heap overflow vulnerability in the HiLCOS web interface that allows unauthenticated remote attackers to trigger a denial-of-service condition by sending specially crafted requests tโ€ฆ

๐Ÿ“… Published: April 2, 2026, 8:40 p.m. ๐Ÿ”„ Last Modified: April 7, 2026, 7:55 a.m.

9.2

CVSS4.0

CVE-2025-15620 - HiOS Switch Platform Denial-of-Service via Web Interface

HiOS Switch Platform versions 09.1.00 prior to 09.4.05 and 10.3.01 contains a denial-of-service vulnerability in the web interface that allows remote attackers to reboot the affected device by sending a malicious HTTP GET request to a specific endpoint. Attackers can trigger an uncontrolled reboot โ€ฆ

๐Ÿ“… Published: April 2, 2026, 8:28 p.m. ๐Ÿ”„ Last Modified: April 3, 2026, 11:17 p.m.
Total resulsts: 349182
Page 717 of 34,919
ยซ previous page ยป next page
Filters