Description
Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
Published: 2026-07-23
Score: 8.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Server‑side request forgery in Microsoft Azure AI Search allows a user who already has service access to send arbitrary requests to internal endpoints. This failure of isolation can let the attacker bypass normal network boundaries and elevate their privileges on systems for which they lack direct credentials. The flaw is classified as CWE‑918, meaning the service accepts unsanitized input that is used to construct internal requests. Based on the description, it is inferred that an authenticated session is the prerequisite; only users who can invoke Azure AI Search are able to exploit this SSRF. The potential impact includes gaining unauthorized data access, modifying or terminating internal resources, and compromising the confidentiality and integrity of the organization’s network.

Affected Systems

Microsoft Azure AI Search. All releases that have not yet incorporated the Microsoft fix are affected; no specific package or SDK version is listed in the advisory.

Risk and Exploitability

The CVSS score of 8.5 signals high severity, and the EPSS score of under 1% indicates that exploitation attempts are expected to be rare. The vulnerability is not currently listed in the CISA KEV catalog. Because the exploit requires an authenticated user to submit the malicious request, the attack surface is limited to legitimate service users. If an attacker succeeds, however, they could create a broad range of malicious actions by directing Azure AI Search to internal endpoints, potentially damaging confidentiality, integrity, or availability of internal systems.

Generated by OpenCVE AI on August 3, 2026 at 20:49 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Microsoft security update that addresses CVE‑2026‑56167.
  • Limit outbound traffic from Azure AI Search to only the necessary services and block internal IP ranges to mitigate SSRF exploitation.
  • Enforce least privilege for accounts that invoke Azure AI Search, and monitor outbound request logs for anomalous activity.

Generated by OpenCVE AI on August 3, 2026 at 20:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 27 Jul 2026 23:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 24 Jul 2026 03:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft azure Ai Search
Vendors & Products Microsoft azure Ai Search

Fri, 24 Jul 2026 00:30:00 +0000

Type Values Removed Values Added
Description Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network.
Title Azure AI Search Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft azure Ai Search
Weaknesses CWE-918
CPEs cpe:2.3:a:microsoft:azure_AI_search:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft azure Ai Search
References
Metrics cvssV3_1

{'score': 8.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Azure Ai Search Azure Ai Search
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-08-10T17:15:06.748Z

Reserved: 2026-06-19T13:53:31.989Z

Link: CVE-2026-56167

cve-icon Vulnrichment

Updated: 2026-07-27T18:59:04.526Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-24T01:17:34.877

Modified: 2026-07-29T14:36:54.927

Link: CVE-2026-56167

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T21:00:12Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)