Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation

Cybersecurity · September 19, 2026

Cybersecurity·thehackernews.com

Microsoft has fixed a maximum-severity flaw in Azure AI Foundry, tracked as CVE-2026-85889 with a perfect CVSS score of 10.0, that stemmed from a missing authentication check on a critical function. The bug could have let a remote attacker escalate privileges over the network without valid credentials. Microsoft says the issue is now resolved on its end and no customer action is required.

// source: thehackernews.com ↗

Back to Blog