Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 14 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:microsoft:azure_monitor_action_group_notification_system:-:*:*:*:*:*:*:* |
Sun, 10 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Fri, 08 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 07 May 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Server-side request forgery (ssrf) in Azure Notification Service allows an authorized attacker to elevate privileges over a network. | |
| Title | Azure Monitor Action Group Notification System Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft azure Monitor Action Group Notification System |
|
| Weaknesses | CWE-918 | |
| CPEs | cpe:2.3:a:microsoft:azure_monitor_action_group_notification_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft azure Monitor Action Group Notification System |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-05-15T17:13:43.075Z
Reserved: 2026-04-16T19:12:36.195Z
Link: CVE-2026-41105
Updated: 2026-05-08T19:49:43.516Z
Status : Analyzed
Published: 2026-05-07T22:16:35.183
Modified: 2026-05-14T14:27:25.660
Link: CVE-2026-41105
No data.
OpenCVE Enrichment
Updated: 2026-05-10T21:26:28Z