Azure Machine Learning Microsoft Azure Machine Learning

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Microsoft Azure Machine Learning.

Recent Microsoft Azure Machine Learning Security Advisories

Advisory Title Published
CVE-2026-33833 CVE-2026-33833 Azure Machine Learning Notebook Spoofing Vulnerability May 12, 2026
CVE-2026-32207 CVE-2026-32207 Azure Machine Learning Notebook Spoofing Vulnerability May 7, 2026
CVE-2025-47995 CVE-2025-47995 Azure Machine Learning Elevation of Privilege Vulnerability July 18, 2025
CVE-2025-49746 CVE-2025-49746 Azure Machine Learning Elevation of Privilege Vulnerability July 18, 2025
CVE-2025-49747 CVE-2025-49747 Azure Machine Learning Elevation of Privilege Vulnerability July 18, 2025
CVE-2023-35625 Azure Machine Learning Compute Instance for SDK Users Information Disclosure Vulnerability December 12, 2023
CVE-2023-28312 Azure Machine Learning Information Disclosure Vulnerability April 11, 2023
CVE-2023-23382 Azure Machine Learning Compute Instance Information Disclosure Vulnerability February 14, 2023

By the Year

In 2026 there have been 2 vulnerabilities in Microsoft Azure Machine Learning with an average score of 8.5 out of ten. Last year, in 2025 Azure Machine Learning had 4 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Azure Machine Learning in 2026 could surpass last years number. Last year, the average CVE base score was greater by 0.55

Year Vulnerabilities Average Score
2026 2 8.50
2025 4 9.05
2024 0 0.00
2023 2 6.50

It may take a day or so for new Azure Machine Learning vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Microsoft Azure Machine Learning Security Vulnerabilities

May 2026: Azure Machine Learning Notebook Spoofing Vulnerability
CVE-2026-33833 8.2 - High - May 12, 2026

Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network.

Injection

May 2026: Azure Machine Learning Notebook Spoofing Vulnerability
CVE-2026-32207 8.8 - High - May 07, 2026

Improper neutralization of input during web page generation ('cross-site scripting') in Azure Machine Learning allows an unauthorized attacker to perform spoofing over a network.

XSS

Jul 2025: Azure Machine Learning Elevation of Privilege Vulnerability
CVE-2025-49747 9.9 - Critical - July 18, 2025

Missing authorization in Azure Machine Learning allows an authorized attacker to elevate privileges over a network.

AuthZ

Jul 2025: Azure Machine Learning Elevation of Privilege Vulnerability
CVE-2025-49746 9.9 - Critical - July 18, 2025

Improper authorization in Azure Machine Learning allows an authorized attacker to elevate privileges over a network.

AuthZ

Jul 2025: Azure Machine Learning Elevation of Privilege Vulnerability
CVE-2025-47995 6.5 - Medium - July 18, 2025

Weak authentication in Azure Machine Learning allows an authorized attacker to elevate privileges over a network.

1390

Apr 2025: Azure ML Compute Elevation of Privilege Vulnerability
CVE-2025-30390 9.9 - Critical - April 30, 2025

Improper authorization in Azure allows an authorized attacker to elevate privileges over a network.

AuthZ

Azure ML Info Disclosure CVE-2023-28312
CVE-2023-28312 6.5 - Medium - April 11, 2023

Azure Machine Learning Information Disclosure Vulnerability

Azure Machine Learning Compute Instance Info Disclosure Vulnerability
CVE-2023-23382 6.5 - Medium - February 14, 2023

Azure Machine Learning Compute Instance Information Disclosure Vulnerability

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Microsoft Azure Machine Learning or by Microsoft? Click the Watch button to subscribe.

Microsoft
Vendor

subscribe