Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-24304 1 Microsoft 2 Azure Resource Manager, Cosmos Db 2026-07-30 10 Critical
Improper access control in Azure Cosmos DB allows an unauthorized attacker to execute code over a network.
CVE-2025-64675 1 Microsoft 2 Azure Cosmos Db, Cosmos Db 2026-04-20 8.3 High
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Cosmos DB allows an unauthorized attacker to perform spoofing over a network.