Real-time CVE monitoring

CVE alerts for
Azure

CVEye scans every new CVE and notifies your team the moment Azure is affected — before attackers can exploit it.

Monitor Azure free →No credit card · 7-day trial

Recent Azure CVEs

  • CVE-2026-62835CRITICALCVSS 9.3

    Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-58630CRITICALCVSS 10.0

    Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-56163CRITICALCVSS 10.0

    Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-62825CRITICALCVSS 10.0

    Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-58275CRITICALCVSS 10.0

    Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2026-56191CRITICALCVSS 10.0

    Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.

  • CVE-2026-56167HIGHCVSS 8.5

    Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-56165CRITICALCVSS 9.8

    Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network.

  • CVE-2026-56160CRITICALCVSS 9.1

    Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-54120CRITICALCVSS 9.9

    Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network.

  • CVE-2026-49159MEDIUMCVSS 6.5

    Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.

  • CVE-2026-35425HIGHCVSS 8.0

    Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.

Never miss a Azure vulnerability

CVEye monitors Azure and your entire stack 24/7, sending instant alerts via email, Slack, Discord, or webhook the moment a new CVE is published.

7-day free trial · No credit card required

Also monitor