Known vulnerabilities in Azure HDInsights

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:azure_hdinsights:*:*:*:*:*:*:*:*
Total vulnerabilities: 10
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Azure HDInsights Azure HDInsights is affected by 10 known vulnerabilities: 2 medium, 8 low Critical High Medium Low

Vulnerabilities (10)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU147908 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-81349
CWE-78 Low
No
No
2606012120 08.09.2026 SB2026090879
#VU122582 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2026-21529
CWE-79 Low
No
No
- 10.02.2026 SB2026021091
#VU81850 - Permissions, Privileges, and Access Controls
CVE-2023-36419
CWE-264 Medium
No
No
2308221128 11.10.2023 SB2023101111
#VU80717 - Permissions, Privileges, and Access Controls
CVE-2023-38156
CWE-264 Low
No
No
2308221128 13.09.2023 SB2023091312
#VU79253 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-36881
CWE-451 Low
No
No
- 08.08.2023 SB20230808119
#VU79252 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-36877
CWE-451 Low
No
No
- 08.08.2023 SB20230808113
#VU79251 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-38188
CWE-451 Low
No
No
- 08.08.2023 SB20230808112
#VU79246 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-35394
CWE-451 Medium
No
No
- 08.08.2023 SB20230808109
#VU79244 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-35393
CWE-451 Low
No
No
- 08.08.2023 SB20230808108
#VU73662 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2023-23408
CWE-451 Low
Available
No
- 14.03.2023 SB2023031469