High severity8.8NVD Advisory· Published Oct 10, 2023· Updated Jun 17, 2026
CVE-2023-36414
CVE-2023-36414
Description
Azure Identity SDK Remote Code Execution Vulnerability
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
Azure.IdentityNuGet | < 1.10.2 | 1.10.2 |
Affected products
3cpe:2.3:a:microsoft:azure_identity_sdk:*:*:*:*:*:.net:*:*+ 1 more
- cpe:2.3:a:microsoft:azure_identity_sdk:*:*:*:*:*:.net:*:*range: <1.10.2
- (no CPE)range: 1.0.0
Patches
Vulnerability mechanics
References
4- msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36414nvdPatchVendor AdvisoryWEB
- github.com/advisories/GHSA-5mfx-4wcx-rv27ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-36414ghsaADVISORY
- github.com/Azure/azure-sdk-for-net/blob/main/sdk/identity/Azure.Identity/CHANGELOG.mdghsaWEB
News mentions
0No linked articles in our index yet.