Microsoft
Microsoft Azure Functions: vulnerabilidades y CVE
Microsoft Azure Functions tiene 5 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses1
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-21532 | Alta (8.2) | 0.89% | — | 5 feb 2026 | Azure Function Information Disclosure Vulnerability |
| CVE-2025-33074 | Alta (8.8) | 0.58% | — | 30 abr 2025 | Improper verification of cryptographic signature in Microsoft Azure Functions allows an authorized attacker to execute code over a network. |
| CVE-2024-49052 | Crítica (9.8) | 0.70% | — | 26 nov 2024 | Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2024-38204 | Media (6.5) | 0.94% | — | 15 oct 2024 | Improper access control in Imagine Cup allows an authorized attacker to elevate privileges over a network. |
| CVE-2020-16904 | Crítica (9.8) | 3.4% | — | 16 oct 2020 | <p>An elevation of privilege vulnerability exists in the way Azure Functions validate access keys.</p> <p>An unauthenticated attacker who successfully exploited this vulnerability could invoke an HTTP Function without… |