PT-2026-2765 · Microsoft · Azure Core

Muhammad Fadilullah Dzaki

·

Published

2026-01-13

·

Updated

2026-01-20

·

CVE-2026-21226

CVSS v3.1
7.5
VectorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Azure Core shared client library for Python (affected versions not specified)
Description The deserialization of untrusted data in the Azure Core shared client library for Python allows an authorized attacker to execute code over a network. This flaw enables an attacker with network access to potentially achieve remote code execution (RCE).
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

BDU:2026-00805
CVE-2026-21226

Affected Products

Azure Core