Microsoft Team Foundation Server
4 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Microsoft Team Foundation Server, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Microsoft Team Foundation Server CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 4 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Medium4
Latest CVEs
The 4 most recently published vulnerabilities affecting Microsoft Team Foundation Server.
- CVE-2021-27067Azure DevOps Server and Team Foundation Server Information Disclosure Vulnerability6.5
- CVE-2019-0743A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Server Cross-site Scripting Vulnerability'. This C...5.4
- CVE-2019-0647An information disclosure vulnerability exists when Team Foundation Server does not properly handle variables marked as secret, aka "Team Foundation Server Information Disclosure Vulnerability." Th...6.5
- CVE-2013-5042Cross-site scripting (XSS) vulnerability in Microsoft ASP.NET SignalR 1.1.x before 1.1.4 and 2.0.x before 2.0.1, and Visual Studio Team Foundation Server 2013, allows remote attackers to inject arb...4.3
Product grouping is registry-driven, with AI assist and human review. How it works