Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
microsoft azure devops server vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2020-1327
A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azure DevOps Server HTML Injection Vulnerability'.
Microsoft Azure Devops Server 2019
Microsoft Azure Devops Server 2019.0.1
9.8
CVSSv3
CVE-2019-1306
A remote code execution vulnerability exists when Azure DevOps Server (ADO) and Team Foundation Server (TFS) fail to validate input properly, aka 'Azure DevOps and Team Foundation Server Remote Code Execution Vulnerability'.
Microsoft Azure Devops Server 2019
Microsoft Azure Devops Server 2019.0.1
Microsoft Team Foundation Server 2018
2 Articles
6.5
CVSSv3
CVE-2021-27067
Azure DevOps Server and Team Foundation Server Information Disclosure Vulnerability
Microsoft Team Foundation Server 2018
Microsoft Team Foundation Server 2017
Microsoft Team Foundation Server 2015
Microsoft Azure Devops Server 2019
Microsoft Azure Devops Server 2019.0.1
Microsoft Azure Devops Server 2020
5.4
CVSSv3
CVE-2020-17145
Azure DevOps Server and Team Foundation Services Spoofing Vulnerability
Microsoft Team Foundation Server 2018
Microsoft Team Foundation Server 2017
Microsoft Team Foundation Server 2015
Microsoft Azure Devops Server 2019
Microsoft Azure Devops Server 2019.0.1
Microsoft Azure Devops Server 2020
7.5
CVSSv3
CVE-2020-0758
An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services improperly handle pipeline job tokens, aka 'Azure DevOps Server and Team Foundation Services Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0...
Microsoft Team Foundation Server 2017
Microsoft Team Foundation Server 2018
Microsoft Azure Devops Server 2019
Microsoft Azure Devops Server 2019.0.1
3 Articles
6.1
CVSSv3
CVE-2019-0874
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting Vulnerability'.
Microsoft Azure Devops Server
1 Article
7.5
CVSSv3
CVE-2023-21553
Azure DevOps Server Remote Code Execution Vulnerability
Microsoft Azure Devops Server 2020.1.2
7.1
CVSSv3
CVE-2023-21564
Azure DevOps Server Cross-Site Scripting Vulnerability
Microsoft Azure Devops Server 2022
6.5
CVSSv3
CVE-2019-0857
A spoofing vulnerability that could allow a security feature bypass exists in when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Spoofing Vulnerability'.
Microsoft Azure Devops Server 2019
1 Article
7.5
CVSSv3
CVE-2019-0875
An elevation of privilege vulnerability exists when Azure DevOps Server 2019 does not properly enforce project permissions, aka 'Azure DevOps Server Elevation of Privilege Vulnerability'.
Microsoft Azure Devops Server 2019
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »