Server-Side Request Forgery in Azure Virtual Machines by Microsoft
CVE-2026-69543

8.5HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
20 August 2026

What is CVE-2026-69543?

A server-side request forgery vulnerability exists in Azure Virtual Machines, which potentially allows an authorized attacker to manipulate server requests and gain elevated privileges within the network. This could lead to unauthorized access and manipulation of sensitive resources within the Azure environment, emphasizing the importance of applying security patches and monitoring network configurations.

Affected Version(s)

Azure Virtual Machines -

References

CVSS V3.1

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.