VYPR

Azure Functions

by Microsoft

CVEs (6)

  • CVE-2023-36052HigNov 14, 2023
    risk 0.58cvss 8.6epss 0.22

    Azure CLI REST Command Information Disclosure Vulnerability

  • CVE-2024-49052HigNov 26, 2024
    risk 0.53cvss 8.2epss 0.01

    Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2025-33074HigApr 30, 2025
    risk 0.49cvss 7.5epss 0.01

    Improper verification of cryptographic signature in Microsoft Azure Functions allows an authorized attacker to execute code over a network.

  • CVE-2024-38204HigOct 15, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper access control in Imagine Cup allows an authorized attacker to elevate privileges over a network.

  • CVE-2020-16904MedOct 16, 2020
    risk 0.35cvss 5.3epss 0.03

    An elevation of privilege vulnerability exists in the way Azure Functions validate access keys. An unauthenticated attacker who successfully exploited this vulnerability could invoke an HTTP Function without proper authorization. This security update addresses…

  • CVE-2026-21532Feb 5, 2026
    risk 0.00cvss epss 0.01

    Azure Function Information Disclosure Vulnerability