High severity8.0NVD Advisory· Published Jul 24, 2026· Updated Aug 17, 2026
CVE-2026-35425
CVE-2026-35425
Description
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
Affected products
2cpe:2.3:a:microsoft:azure_api_management:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:azure_api_management:-:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-35425nvdVendor Advisory
News mentions
0No linked articles in our index yet.