Server-side request forgery (ssrf) in Azure DevOps Server allows an authorized attacker to perform spoofing over a network.
CVE-2026-21512 Azure DevOps Server Cross-Site Scripting Vulnerability
Published February 12, 2026
Published February 12, 2026
Server-side request forgery (ssrf) in Azure DevOps Server allows an authorized attacker to perform spoofing over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.