← Back

CVE-2026-21512

nvd nist
Published: Feb 10, 2026Modified: Feb 11, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: secure@microsoft.com

Description

Server-side request forgery (ssrf) in Azure DevOps Server allows an authorized attacker to perform spoofing over a network.

Affected (9)

1 product
Azure Devops Server
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Before 2022.2.0
Version 2022.2.0
Version 2022.2.0 patch2
Version 2022.2.0 patch3
Version 2022.2.0 patch4
Version 2022.2.0 patch5
Version 2022.2.0 patch6
Version 2022.2.0 patch7
Version 2022.2.0 rc

References (1)

Timeline

No history available yet.