CVE-2026-23659Disclosure(microsoft / azure_data_factory)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Exposure of sensitive information to an unauthorized actor in Azure Data Factory allows an unauthorized attacker to disclose information over a network.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-200

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • azure_data_factory

Threat summary

  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • General: 3 classified signals
  • Peaked 3d ago at 2 mentions (2026-03-20); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Vendors
Products
azure_data_factory

1 version affected across 1 product

Deep dive

Activity timeline7 mentions / 5d
01122Mentions · 2026-03-19: 1Mentions · 2026-03-20: 2Mentions · 2026-03-22: 1Mentions · 2026-03-24: 2Mentions · 2026-03-26: 1Technical Details · 2026-03-19: 1Technical Details · 2026-03-20: 1Technical Details · 2026-03-22: 103-1903-2003-2203-2403-26
Signal classification2 categories
Disclosure
457.1%
General
342.9%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-03-191
Disclosure1
2026-03-202
Disclosure1General1
2026-03-221
Disclosure1
2026-03-242
Disclosure1General1
2026-03-261
General1
Full discourse7 posts
  • kawn@kawn2020
    Disclosure

    #securityupdate #microsoft #定例外 2026. 3.19 Azure Data Factory の情報漏えいの脆弱性 CVE-2026-23659 Security Vulnerability リリース日: - マイクロソフト https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23659

    Post summary

    The post announces CVE‑2026‑23659, an information‑leak vulnerability in Azure Data Factory, and links to Microsoft's update guide, but offers no further technical details, proof‑of‑concept, or evidence of exploitation.

    1010065
    88 followersView on X
  • kawn@kawn2020
    General

    #securityupdate #microsoft #定例外 CVE-2026-23659 Security Vulnerability 影響: 情報漏えい 最大深刻度: 緊急 CVSS:3.1 8.6 / 7.5 悪用可能性 ・一般に公開: No ・悪用: No ・Exploitability assessment: 対象外 https://x.com/kawn2020/status/2036261925223538924

    Post summary

    The tweet announces CVE-2026-23659 with info‑leakage impact and high CVSS scores but provides no proof of concept, exploit code, active exploitation evidence, or patch information.

    1000031
    88 followersView on X
  • Aakash Rahsi@rahsi_aaka
    General

    CVE-2026-23659 | Azure Data Factory Information Disclosure Vulnerability https://www.aakashrahsi.online/post/cve-2026-23659 https://t.co/Fe3W6UWx90

    Post summary

    The text references CVE-2026-23659 as an Azure Data Factory information disclosure vulnerability but provides no further details or actionable information.

    0000028
    1 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-23659 Exposure of sensitive information to an unauthorized actor in Azure Data Factory allows an unauthorized attacker to disclose information over a network. https://www.cve.org/CVERecord?id=CVE-2026-23659

    Post summary

    The tweet announces CVE‑2026‑23659 as an information‑disclosure vulnerability in Azure Data Factory, without providing PoC, exploit, or patch details.

    00000184
    56.8K followersView on X
  • dbugs@ptdbugs
    Disclosure

    Azure Data Factory Information Disclosure Vulnerability CVE: CVE-2026-23659 PT-Identifier: PT-2026-26351 Vendor: Microsoft Product: Azure Data Factory CVSS: 8.6 Credits: n/a Description: Exposure of sensitive information to an unauthorized actor in Azure Data Factory allows an unauthorized attacker to disclose information over a network. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-23659 • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23659 #dbugs_vuln

    Post summary

    The post announces CVE‑2026‑23659, an information‑disclosure vulnerability in Azure Data Factory with CVSS 8.6, and directs readers to vendor advisories, but provides no PoC, exploit code, or signs of active exploitation.

    0000039
    649 followersView on X
  • RedPacket Security@RedPacketSec
    General

    CVE Alert: CVE-2026-23659 - Microsoft - Azure Data Factory - https://www.redpacketsecurity.com/cve-alert-cve-2026-23659-microsoft-azure-data-factory/ #OSINT #ThreatIntel #CyberSecurity #cve-2026-23659 #microsoft #azure-data-factory

    Post summary

    The text merely announces a CVE alert for Microsoft Azure Data Factory without providing details, proof of concept, exploitation evidence, patches, or technical specifics.

    0000080
    3.6K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-23659: HIGH] Exposure of sensitive information to an unauthorized actor in Azure Data Factory allows an unauthorized attacker to disclose information over a network.#cve,CVE-2026-23659,#cybersecurity https://cvefind.com/CVE-2026-23659

    Post summary

    The tweet announces CVE‑2026‑23659 as a high‑severity data‑exposure flaw affecting Azure Data Factory, with no PoC, exploit tool, patch, or evidence of active exploitation provided.

    0000048
    603 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftazure_data_factory---

Explore more