doc: add advisory for critical sev cve-2026-33186#396
doc: add advisory for critical sev cve-2026-33186#396chrischangcode wants to merge 4 commits intoMicrosoftDocs:mainfrom
Conversation
|
@chrischangcode : Thanks for your contribution! The author(s) and reviewer(s) have been notified to review your proposed change. |
|
Learn Build status updates of commit cff1c74: ✅ Validation status: passed
For more details, please refer to the build report. |
|
Learn Build status updates of commit 52f2b2b: ✅ Validation status: passed
For more details, please refer to the build report. |
|
Learn Build status updates of commit 8d70ff9: ✅ Validation status: passed
For more details, please refer to the build report. |
There was a problem hiding this comment.
Pull request overview
Adds a new AKS security bulletin entry documenting CVE-2026-33186 (gRPC-Go authorization bypass) and updates the security bulletins page date so the advisory is discoverable from the central AKS bulletins index.
Changes:
- Updated
ms.dateto reflect the latest bulletin publication. - Added bulletin AKS-2026-0002 with description, references, and affected/resolution guidance for CVE-2026-33186.
Comments suppressed due to low confidence (1)
articles/aks/security-bulletins/overview.md:8
- The front matter is missing the required
ai-usageentry. Since this PR adds a substantial new advisory section, please addai-usage: ai-assisted(orai-generated, as appropriate) to the YAML front matter to comply with Learn AI disclosure requirements.
---
title: Security bulletins for Azure Kubernetes Service (AKS)
description: This article provides security/vulnerability related updates and troubleshooting guides for Azure Kubernetes Services (AKS).
ms.date: 03/20/2026
author: bcho
ms.author: bahe
ms.topic: concept-article
ms.subservice: aks-security
|
Can you review the proposed changes? Important: When the changes are ready for publication, adding a #label:"aq-pr-triaged" |
|
Learn Build status updates of commit 668f484: ✅ Validation status: passed
For more details, please refer to the build report. |
Adds security bulletin advisory for gRPC vulnerability detected in many AKS modules