Jun 2026: Microsoft Azure Synapse Elevation of Privilege Vulnerability
CVE-2026-48584 Published on June 19, 2026

Microsoft Azure Synapse Elevation of Privilege Vulnerability
Execution with unnecessary privileges in Azure Synapse allows an authorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

Execution with Unnecessary Privileges

The software performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.


Products Associated with CVE-2026-48584

Want to know whenever a new CVE is published for Microsoft Azure Synapse? stack.watch will email you.

 

Affected Versions

Microsoft Azure Synapse Version - is affected by CVE-2026-48584