CVE-2018-8600: Microsoft Azure App Service On Azure Stack

Medium severity, CVSS 6.1. EPSS: 2.3% chance of exploitation in the next 30 days.

A Cross-site Scripting (XSS) vulnerability exists when Azure App Services on Azure Stack does not properly sanitize user provided input, aka "Azure App Service Cross-site Scripting Vulnerability." This affects Azure App.

Affected products

  • Microsoft Azure App Service On Azure Stack: affected versions not specified

Published 2018-11-14. Last modified 2026-06-17.