CVE-2026-35425: Azure API Management (APIM) Remote Code Execution Vulnerability
Published Jul 23, 2026
·Updated
Azure API Management (APIM) Remote Code Execution Vulnerability
Other sources
Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.
— Microsoft
Affected Software
1 affected component
Microsoft Azure API Management (APIM)
Event History
Jul 23, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Description
Jul 24, 2026
CVE Published
via MITRE·12:01 AM
Data Sourced
via MITRE·12:01 AM
DescriptionSeverity
Data Sourced
via NVD·01:16 AM
DescriptionSeverityWeakness