Known Vulnerabilities for Azure Sql Database by Microsoft
Listed below are 5 of the newest known vulnerabilities associated with "Azure Sql Database" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-69502 json | Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network... | Not Provided | 2026-08-21 | 2026-08-25 |
| CVE-2026-68789 json | Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authoriz... | Not Provided | 2026-08-20 | 2026-08-24 |
| CVE-2026-68782 json | Improper neutralization of special elements used in an sql command ('sql injection') in Azure SQL Database allows an authoriz... | Not Provided | 2026-08-20 | 2026-08-24 |
| CVE-2026-66309 json | Improper access control in Azure SQL Database allows an authorized attacker to elevate privileges over a network. | Not Provided | 2026-08-20 | 2026-08-24 |
| CVE-2026-63522 json | Incorrect permission assignment for critical resource in Azure SQL Database allows an authorized attacker to elevate privileg... | Not Provided | 2026-08-11 | 2026-08-17 |
| CVE-2026-56162 json | Improper authentication in Azure SQL Database allows an unauthorized attacker to elevate privileges over a network. | Not Provided | 2026-08-07 | 2026-08-08 |
| CVE-2026-42151 json | Prometheus is an open-source monitoring system and time series database. Prior to versions 3.5.3 and 3.11.3, the client_secre... | Not Provided | 2026-05-04 | 2026-08-27 |
| CVE-2026-12283 json | Amazon Athena is a serverless, interactive query service that lets you analyze data directly in Amazon S3 using standard SQL.... | Not Provided | 2026-07-17 | 2026-07-17 |
| CVE-2026-12047 json | HTML injection in pgAdmin 4's cloud deployment module. The verify_credentials, deploy, regions, and update-server endpoints u... | Not Provided | 2026-06-19 | 2026-06-22 |