A spoofing vulnerability exists in Azure DevOps Server when it improperly handles requests to authorize applications, resulting in a cross-site request forgery, aka 'Azure DevOps Server Spoofing Vulnerability'.
https://www.tenable.com/blog/tenable-roundup-for-microsofts-june-2019-patch-tuesday
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0996