Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 06 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:azure_databricks:-:*:*:*:*:*:*:* |
Fri, 03 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 03 Apr 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-side request forgery (ssrf) in Azure Databricks allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Azure Databricks Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft azure Databricks |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:azure_databricks:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Databricks |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-05-12T17:38:46.502Z
Reserved: 2026-03-17T20:15:23.720Z
Link: CVE-2026-33107
Updated: 2026-04-03T13:48:42.872Z
Status : Analyzed
Published: 2026-04-03T00:16:05.207
Modified: 2026-04-06T17:52:39.963
Link: CVE-2026-33107
No data.
OpenCVE Enrichment
Updated: 2026-04-07T07:55:20Z