{"record":"Microsoft Azure evidence record","url":"https://nexalign.io/vendors/microsoft-azure","vendor":{"slug":"microsoft-azure","name":"Microsoft Azure","domain":"azure.microsoft.com","category":"cloud","categoryLabel":"Cloud and sovereign cloud"},"lastChecked":"2026-07-17T16:19:16.700Z","coverage":{"earliest":"2023-06-02T00:00:00.000Z","latest":"2026-07-17T16:19:16.700Z"},"terms":{"isRanking":false,"isRating":false,"statesSuitability":false,"note":"This is a record of what public sources hold about a named company. It states no ranking, no rating and no suitability verdict, and none may be derived from it. An absent or small record means the public registers publish little under that name; it is not evidence that a product is secure. A larger advisory count generally reflects wider deployment and more scrutiny rather than a weaker product.","licence":"https://nexalign.io/vendors#licence","corrections":"info@nexalign.io"},"totals":{"evidenceItems":86,"kindsOfSource":5,"attributedAdvisories":29,"knownExploited":0,"registerEntriesNotAttributable":33,"practitionerThreads":16,"independentItems":5,"vendorPublishedItems":0,"shareFromSourcesTheVendorDoesNotControl":1},"sources":[{"source":"European Vulnerability Database","operator":"ENISA, European Union","classification":"authoritative","items":31,"latest":"2026-07-16T14:52:03.000Z"},{"source":"CERT-Bund security advisories","operator":"BSI, Federal Republic of Germany","classification":"authoritative","items":30,"latest":"2026-07-16T06:21:39.452Z"},{"source":"Known Exploited Vulnerabilities catalogue","operator":"CISA, United States","classification":"authoritative","items":1,"latest":"2023-06-02T00:00:00.000Z"},{"source":"Engineering discussions","operator":"Hacker News, public threads","classification":"independent","items":18,"latest":"2026-07-02T16:07:14.000Z"},{"source":"Analyst, review and reference sources","operator":"Recognised analysts, review marketplaces and technology press","classification":"independent","items":6,"latest":"2026-07-17T16:19:16.700Z"}],"advisories":{"shown":6,"total":29,"truncated":true,"fullList":"https://nexalign.io/vendors/microsoft-azure/advisories","items":[{"id":"WID-SEC-2026-2321","description":"Affected products: Microsoft Azure","severity":"high","cvss":8.8,"knownExploited":false,"date":"2026-07-16T06:21:39.452Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2321"]},{"id":"WID-SEC-2026-2184","description":"Affected products: Microsoft Azure, Microsoft Entra","severity":"high","cvss":9.9,"knownExploited":false,"date":"2026-07-03T09:55:53.646Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2184"]},{"id":"WID-SEC-2026-2017","description":"Affected products: Microsoft Azure","severity":"high","cvss":10,"knownExploited":false,"date":"2026-06-22T11:39:49.732Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2017"]},{"id":"WID-SEC-2026-1842","description":"Affected products: Microsoft Azure, Microsoft Azure Stack","severity":"high","cvss":10,"knownExploited":false,"date":"2026-06-10T06:15:53.217Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1842"]},{"id":"WID-SEC-2026-1649","description":"Affected products: Microsoft Azure, Microsoft Azure Stack","severity":"high","cvss":10,"knownExploited":false,"date":"2026-05-26T12:17:51.395Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1649"]},{"id":"WID-SEC-2026-1577","description":"Affected products: Microsoft Azure","severity":"high","cvss":10,"knownExploited":false,"date":"2026-05-19T10:25:53.366Z","sources":["https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1577"]}]},"practitionerThreads":{"shown":5,"total":16,"truncated":true,"items":[{"title":"Microsoft Outlook thinks Microsoft Azure emails are spam","context":"Hacker News","url":"https://news.ycombinator.com/item?id=46940065","date":"2026-02-09T00:23:46.000Z"},{"title":"Outage at Microsoft Azure","context":"Hacker News","url":"https://news.ycombinator.com/item?id=45749431","date":"2025-10-29T16:44:38.000Z"},{"title":"Microsoft Azure: \"Multiple international subsea cables were cut in the Red Sea\"","context":"Hacker News","url":"https://news.ycombinator.com/item?id=45152773","date":"2025-09-06T20:57:15.000Z"},{"title":"Microsoft Azure Hardware Security to Help Thwart the 3rd Largest GDP","context":"Hacker News","url":"https://news.ycombinator.com/item?id=45027273","date":"2025-08-26T14:44:44.000Z"},{"title":"EU Eyes Ditching Microsoft Azure for France's OVHcloud","context":"Hacker News","url":"https://news.ycombinator.com/item?id=44331045","date":"2025-06-20T19:20:13.000Z"}]},"independentCoverage":{"shown":5,"total":5,"truncated":false,"items":[{"title":"Microsoft Azure Reviews, Ratings & Features 2023 | Gartner Peer Insights","host":"gartner.com","url":"https://www.gartner.com/reviews/market/generative-ai-infrastructure-providers/vendor/microsoft/product/azure","date":null},{"title":"What is your primary use case for Microsoft Azure?","host":"peerspot.com","url":"https://www.peerspot.com/questions/what-is-your-primary-use-case-for-microsoft-azure","date":null},{"title":"Microsoft Azure - Wikipedia","host":"en.wikipedia.org","url":"https://en.wikipedia.org/wiki/Microsoft_Azure","date":null},{"title":"Microsoft Azure Reviews & Ratings 2026 | Gartner Peer Insights","host":"gartner.com","url":"https://www.gartner.com/reviews/market/strategic-cloud-platform-services/vendor/microsoft/product/azure","date":null},{"title":"Microsoft Azure Reviews, Competitors and Pricing","host":"peerspot.com","url":"https://www.peerspot.com/products/microsoft-azure-reviews","date":null}]},"vendorPublished":{"shown":0,"total":0,"truncated":false,"items":[]},"openQuestions":["A further 33 register entries mention Microsoft Azure without naming a product of Microsoft Azure as affected. They are excluded rather than counted as vulnerabilities.","Pricing, contract terms, notice periods and support commitments are not part of any public register. They come from the vendor and belong in a negotiation record.","Certification status such as ISO 27001, SOC 2 or BSI C5 has to be checked against the current certificate and its stated scope. A valid certificate can still exclude the product being bought."]}