Known vulnerabilities in Azure Monitor Agent

Vendor: Microsoft
Software CPE: cpe:2.3:a:microsoft:azure_monitor_agent:*:*:*:*:*:*:*:*
Total vulnerabilities: 12
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Azure Monitor Agent Azure Monitor Agent is affected by 12 known vulnerabilities: 1 high, 2 medium, 9 low Critical High Medium Low

Vulnerabilities (12)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU131206 - External Control of File Name or Path
CVE-2026-32204
CWE-73 Low
No
No
1.14.0 12.05.2026 SB2026051297
#VU126161 - Deserialization of Untrusted Data
CVE-2026-32192
CWE-502 Low
No
No
1.41.0 15.04.2026 SB2026041586
#VU126160 - Improper input validation
CVE-2026-32168
CWE-20 Low
No
No
1.35.9 15.04.2026 SB2026041585
#VU119448 - Out-of-bounds write
CVE-2025-62550
CWE-787 Medium
No
No
- 09.12.2025 SB2025120958
#VU118333 - Heap-based Buffer Overflow
CVE-2025-59504
CWE-122 High
No
No
- 11.11.2025 SB2025111195
#VU117169 - Deserialization of Untrusted Data
CVE-2025-59285
CWE-502 Low
No
No
- 15.10.2025 SB2025101526
#VU117168 - Improper Access Control
CVE-2025-59494
CWE-284 Low
No
No
- 15.10.2025 SB2025101526
#VU112526 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-47988
CWE-94 Medium
No
No
1.35.1 08.07.2025 SB2025070868
#VU98256 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-38097
CWE-59 Low
No
No
- 09.10.2024 SB2024100920
#VU91697 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-35254
CWE-59 Low
No
No
- 11.06.2024 SB20240611225
#VU89627 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-30060
CWE-59 Low
No
No
1.26.0 17.05.2024 SB2024051716
#VU88424 - Improper Link Resolution Before File Access ('Link Following')
CVE-2024-29989
CWE-59 Low
No
No
- 10.04.2024 SB2024041067