Skip to content
The Nexus
SECURITYMay 16 · 20:55 UTCBLEEPING COMPUTERAx Sharma

Microsoft rejects critical Azure vulnerability report, no CVE issued

A security researcher reported a critical Azure vulnerability to Microsoft, but the company rejected the report and did not issue a CVE. The researcher claims that Microsoft quietly fixed the vulnerability despite rejecting the report. Microsoft disputes this claim, stating that the behavior was expected and no product changes were made.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this