Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Azure Sql Database
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-69502 1 Microsoft 1 Azure Sql Database 2026-09-04 N/A 10.0 CRITICAL
Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-68789 1 Microsoft 1 Azure Sql Database 2026-08-24 N/A 9.9 CRITICAL
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-68782 1 Microsoft 1 Azure Sql Database 2026-08-24 N/A 9.9 CRITICAL
Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-66309 1 Microsoft 1 Azure Sql Database 2026-08-24 N/A 9.1 CRITICAL
Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges over a network.
CVE-2026-63522 1 Microsoft 1 Azure Sql Database 2026-08-17 N/A 7.8 HIGH
Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate privileges locally.
CVE-2026-56162 1 Microsoft 1 Azure Sql Database 2026-08-08 N/A 10.0 CRITICAL
Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network.