Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
9.6
CVE-2026-87701
- EPSS 0.44%
- Veröffentlicht 17.09.2026 22:55:57
- Zuletzt bearbeitet 29.09.2026 18:52:30
Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.
8.8
CVE-2026-69857
- EPSS 0.42%
- Veröffentlicht 03.09.2026 22:59:16
- Zuletzt bearbeitet 09.09.2026 18:50:00
Authorization bypass through user-controlled key in Azure Cosmos DB allows an authorized attacker to perform spoofing over a network.
- EPSS 0.48%
- Veröffentlicht 30.07.2026 20:28:04
- Zuletzt bearbeitet 04.08.2026 20:46:44
Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.
9.6
CVE-2025-64675
- EPSS 0.72%
- Veröffentlicht 18.12.2025 23:15:31
- Zuletzt bearbeitet 16.01.2026 17:25:03
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Cosmos DB allows an unauthorized attacker to perform spoofing over a network.
1