azure_portal vulnerabilities
CVEs whose affected-version data names the azure_portal package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-83946High· 8.2Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal allows an unauthorized attacker to perform spoofing over a network.
Improper neutralization of input during web page generation ('cross-site scripting') in Azure Portal allows an unauthorized attacker to perform spoofing over a network.
▾ TwilightMicrosoft · Azure PortalEPSS 0.39%via NVD
CVE-2026-62835Critical· 9.3Azure Portal Information Disclosure Vulnerability
Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.
▾ MidnightMicrosoft · Azure PortalEPSS 0.73%via CVEORG