POWERSHELL COMMAND
Get-XdrVulnerabilityManagementChangeEvents
Retrieves change events from Vulnerability Management.
Gets change event information from Threat and Vulnerability Management (TVM) in Microsoft Defender XDR. This function includes caching support with a 30-minute TTL to reduce API calls. By default, returns all change event results with pagination handled automatically.
Syntax
Get-XdrVulnerabilityManagementChangeEvents [-Force] [-Top <int>] [<CommonParameters>]
Get-XdrVulnerabilityManagementChangeEvents [-Force] [-Top <int>] [-CountOnly] [<CommonParameters>]
Get-XdrVulnerabilityManagementChangeEvents [-Force] [-Top <int>] [-SummaryOnly] [<CommonParameters>]
Parameters
-Force
| Property | Value |
|---|---|
| Type | SwitchParameter |
| Required | No |
| Position | named |
| Pipeline input | No |
| Default | False |
Bypasses the cache and forces a fresh retrieval from the API.
-Top
| Property | Value |
|---|---|
| Type | Int32 |
| Required | No |
| Position | named |
| Pipeline input | No |
| Default | 0 |
Limits the number of results returned. Useful for previewing data without fetching all pages.
-CountOnly
| Property | Value |
|---|---|
| Type | SwitchParameter |
| Required | No |
| Position | named |
| Pipeline input | No |
| Default | False |
Returns only the total count of change events (numOfResults).
-SummaryOnly
| Property | Value |
|---|---|
| Type | SwitchParameter |
| Required | No |
| Position | named |
| Pipeline input | No |
| Default | False |
Returns only the change event summary metadata (meta object).
Examples
Get-XdrVulnerabilityManagementChangeEvents
Retrieves all change events with full pagination.
Get-XdrVulnerabilityManagementChangeEvents -Force
Forces a fresh retrieval of change events, bypassing the cache.
Get-XdrVulnerabilityManagementChangeEvents -Top 10
Returns only the first 10 change events.
Get-XdrVulnerabilityManagementChangeEvents -CountOnly
Returns only the total number of change events.
Get-XdrVulnerabilityManagementChangeEvents -SummaryOnly
Returns only the change event summary metadata.
Output
Type: System.Object[]
Returns an array of change event objects when using default or -Top parameters.
System.Int64 When -CountOnly is specified, returns the total count as an integer.
System.Object[] When -SummaryOnly is specified, returns the metadata array.