Api.Msrc.Microsoft
CVE-2026: SSRF Vulnerabilities in Azure Services
First seen 10 Mar 2026, 17:28 UTC
•
•72.0
Export
Article Content
Browse articles
Two critical server-side request forgery (SSRF) vulnerabilities have been identified in Azure services. The first allows authorized attackers to elevate privileges in Azure MCP Server, while the second enables unauthorized attackers to perform spoofing via Azure IoT Explorer. Both vulnerabilities pose significant risks to network security.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2026-03-10
CVE-2026 published
2026-03-10
Microsoft releases advisory on vulnerabilities
More articles in this cluster
Continue Reading
AzCopy Utility Exploited in Ransomware Data Exfiltration Campaigns
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
Jewelbug APT Group Engages in Espionage and Cryptocurrency Fraud
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
ShinyHunters Exploits Oracle PeopleSoft Zero-Day Vulnerability