// Microsoft AzureMEDIUM
Microsoft disclosed CVE-2026-58275, an elevation-of-privilege vulnerability in Azure DNS, on July 23, 2026. The flaw potentially allows authenticated attackers to gain unauthorized privileges in DNS management contexts, affecting organizations using Azure-hosted DNS zones and private DNS infrastructure. No technical details, CVSS score, proof-of-concept, or evidence of active exploitation have been publicly disclosed; Microsoft may have deployed backend mitigations without requiring customer action.
// Get alerts for Microsoft Azure