CVE-2026-42826
Published May 7, 2026Exposure of sensitive information to an unauthorized actor in Azure DevOps allows an unauthorized attacker to disclose information over a network.
- evidence mentions
- 2
- Buzz score
- 17.5
Vendor/product archive
4 CVEs tagged to microsoft / azure_devops — 3 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Exposure of sensitive information to an unauthorized actor in Azure DevOps allows an unauthorized attacker to disclose information over a network.
Insufficiently protected credentials in Azure DevOps allows an unauthorized attacker to elevate privileges over a network.
Authentication bypass by assumed-immutable data in Azure DevOps allows an unauthorized attacker to elevate privileges over a network.
Authentication bypass by assumed-immutable data in Azure DevOps allows an unauthorized attacker to elevate privileges over a network.