Microsoft patches critical Azure AI Foundry flaw that could escalate privileges

TL;DR Summary
Microsoft fixed a maximum-severity flaw in Azure AI Foundry (CVE-2026-85889, CVSS 10.0) that could let an unauthorized user escalate privileges, with no customer action required. The researcher Rémy Marot was credited, and no exploitation in the wild was reported. Microsoft also patched several other high-severity CVEs across its products and Windows updates, all addressed without user action needed.
Topics:technology#azure-ai-foundry#cloud-security#cve-2026-85889#microsoft-patches#privilege-escalation#security
- Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation thehackernews.com
- Microsoft Patches 18 Vulnerabilities in AI, Cloud Products securityweek.com
- The Fault Line Spreads: Azure’s September CVE Cluster Now Covers PostgreSQL and Billing forkast.news
- Microsoft’s Patching Security Boulevard
- Microsoft patches over 2,750 vulnerabilities this year; two zero-days actively exploited TechGig
Reading Insights
Total Reads
0
Unique Readers
6
Time Saved
2 min
vs 3 min read
Condensed
87%
450 → 58 words
Want the full story? Read the original article
Read on thehackernews.com