Scope
What the vendor says is affected
azl3 expat 2.8.2-1 on Azure Linux 3.0 azl3 cmake 3.30.3-15 on Azure Linux 3.0 azl3 python3 3.12.9-14 on Azure Linux 3.0
Update history
What changed in later vendor updates
SecurityAlert records field-level changes from the point we begin following a bulletin. Earlier vendor changes may not have a field-by-field record.
Aug 24, 2026 at 8:10 AM UTC Added affected products: azl3 cmake 3.30.3-15 on Azure Linux 3.0, azl3 python3 3.12.9-14 on Azure Linux 3.0.
Timeline
When this advisory changed
Aug 21, 2026 at 2:02 PM UTC Published by Microsoft Security Response Center The publication date reported by the vendor.
Aug 23, 2026 at 7:50 AM UTC Added to SecurityAlert We collected the advisory from the official source.
Aug 24, 2026 at 1:44 AM UTC Updated by Microsoft Security Response Center The vendor changed the advisory after it was first published.
Sep 6, 2026 at 6:25 AM UTC Confirmed at the source Our collector saw this advisory during a later source check.
Vulnerabilities
CVEs named in this advisory
CVE-2026-50219 View CVSS, KEV, EPSS, and threat context CVE-2026-56131 View CVSS, KEV, EPSS, and threat context CVE-2026-56412 View CVSS, KEV, EPSS, and threat context CVE-2026-76957 View CVSS, KEV, EPSS, and threat context