CVE-2025-59500: Microsoft Azure Notification Service

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper access control in Azure Notification Service allows an authorized attacker to elevate privileges over a network.

Affected products

  • Microsoft Azure Notification Service: affected versions not specified

Published 2025-10-23. Last modified 2026-10-08.