Microsoft Patches Critical Azure AI Flaw Enabling Unauthorized Privilege Escalation
Microsoft has released patches for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. The vulnerability, tracked as CVE-2026-85889, carries a CVSS score of 10.0.
Azure AI Foundry is an enterprise platform designed to build, deploy, and manage generative artificial intelligence (AI) applications and agents. The Windows maker credited security researcher Rémy Marot (@R_Marot) for discovering and reporting the flaw.
The vulnerability has already been fully mitigated by Microsoft, and no customer action is required. This comes as part of a larger effort to address multiple critical flaws in recent days, including CVE-2026-85885, CVE-2026-85878, and CVE-2026-87701.