📦 Azure Hdinsight

by Microsoft

🔍 What is Azure Hdinsight?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-36419

HIGH CVSS 8.8 Oct 10, 2023

This vulnerability in Azure HDInsight's Apache Oozie workflow scheduler allows attackers to perform XML External Entity (XXE) attacks, potentially leading to privilege escalation. Attackers could read...

CVE-2023-38156

HIGH CVSS 7.2 Sep 12, 2023

This vulnerability allows authenticated attackers to execute arbitrary SQL commands via JDBC injection in Azure HDInsight's Apache Ambari component. Successful exploitation enables privilege escalatio...

CVE-2026-21529

MEDIUM CVSS 5.7 Feb 10, 2026

This cross-site scripting (XSS) vulnerability in Azure HDInsights allows authenticated attackers to inject malicious scripts into web pages. When exploited, it enables spoofing attacks where users may...

CVE-2023-36877

MEDIUM CVSS 4.5 Aug 8, 2023

CVE-2023-36877 is a cross-site scripting (XSS) vulnerability in Azure Apache Oozie that allows attackers to inject malicious scripts into web pages viewed by other users. This affects organizations us...

CVE-2023-36881

MEDIUM CVSS 4.5 Aug 8, 2023

CVE-2023-36881 is a cross-site scripting (XSS) vulnerability in Azure Apache Ambari that allows attackers to inject malicious scripts into web interfaces. This affects Azure HDInsight clusters using A...

CVE-2023-35393

MEDIUM CVSS 4.5 Aug 8, 2023

CVE-2023-35393 is a cross-site scripting (XSS) vulnerability in Azure Apache Hive that allows attackers to inject malicious scripts into web pages viewed by other users. This affects Azure HDInsight c...

CVE-2023-35394

MEDIUM CVSS 4.6 Aug 8, 2023

This vulnerability allows attackers to inject malicious scripts into Azure HDInsight Jupyter Notebooks, which could execute in users' browsers when viewing manipulated content. It affects Azure HDInsi...

CVE-2023-23408

MEDIUM CVSS 4.5 Mar 14, 2023

This vulnerability allows attackers to inject malicious scripts into Azure Apache Ambari web interfaces, which could execute in users' browsers when viewing compromised pages. It affects Azure HDInsig...