Showing archive results for April 2026

Apr 24, 2026
Post comments count0
Post likes count0

Axios npm Supply Chain Compromise – Guidance for Azure Pipelines Customers

Josef Sin

On March 31, 2026, malicious versions of the widely used JavaScript HTTP client library Axios were briefly published to the npm registry as part of a supply chain attack. The affected versions — 1.14.1 and 0.30.4 — included a hidden malicious dependency that executed during installation and connected to attacker-controlled command-and-cont...

SecurityAzure & CloudCI/CD
Apr 22, 2026
Post comments count3
Post likes count3

Optimizing Git policy management at scale

Azat Galiev

With just a single improvement in the REST API of Azure DevOps, we achieved a massive reduction in CPU usage and execution time when managing Git policies: 2x less CPU and 10-15x faster execution! This change is already available to all users of Azure DevOps, and it's time to share a bit more detail: the background, what the change is, and how it ...

Git & Version Control
Apr 22, 2026
Post comments count0
Post likes count2

Public Preview: Actual Result for Manual Tests in Azure Test Plans

Panagiotis Liaros

We're excited to announce the public preview of the highly anticipated Actual Result (AR) feature for manual testing in Azure Test Plans! This feature has been one of the top requests of the community, and we're thrilled to make it available for you. Why use the Actual Result feature? Manual testing is a critical part of many teams' processes. Th...

TestCommunityUX
Apr 21, 2026
Post comments count3
Post likes count4

Azure DevOps MCP Server April Update

Dan Hellem

This update brings a set of improvements and changes across both local and remote Azure DevOps MCP Servers. Here’s a summary of what’s changed. Query work items with WIQL We’ve introduced a new tool that enables users to construct and run work item WIQL queries. For our remote MCP, to ensure reliability and performance, access to this tool is c...

Azure & Cloud
Apr 15, 2026
Post comments count3
Post likes count1

One-click security scanning and org-wide alert triage come to Advanced Security

Laura Jiang

We're shipping two major capabilities that change how security teams enable and act on application security in Azure DevOps: CodeQL default setup makes it possible to enable code scanning across your organization without configuring a single pipeline, and a new combined alerts experience in Security Overview gives security administrators a single p...

Azure & CloudDevOpsSecurity
Apr 14, 2026
Post comments count10
Post likes count1

April Patches for Azure DevOps Server

Gloridel Morales

We are releasing patches for our self‑hosted product, Azure DevOps Server. We strongly recommend that all customers remain on the latest, most secure version to ensure optimal protection and reliability. The latest release of Azure DevOps Server is available from the download page. This patch applies to the most recent version, Azure DevOps Server...

Azure DevOps ServerPatches
Apr 1, 2026
Post comments count0
Post likes count8

Improving the Markdown Editor for Work Items

Dan Hellem

We introduced the Markdown editor in July 2025 to bring Markdown support to large text fields in work items. Since then, we’ve received valuable customer feedback highlighting challenges with the editing experience, particularly when switching in and out of edit mode. Many users found the current interaction model confusing and, at times, disrupti...

Azure & Cloud