High severity8.5NVD Advisory· Published Jul 24, 2026· Updated Jul 29, 2026
CVE-2026-56167
CVE-2026-56167
Description
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
Affected products
2cpe:2.3:a:microsoft:azure_ai_search:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:microsoft:azure_ai_search:-:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56167nvdVendor Advisory
News mentions
0No linked articles in our index yet.