Threat Advisory

Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation

CRITICAL CVSS 10 September 18, 2026

What happened

Microsoft has issued security patches addressing a critical flaw in Azure AI Foundry, designated as CVE-2026-85889. This vulnerability results from missing authentication for a critical function within the Azure AI Foundry platform. Exploiting this flaw could allow an unauthorised attacker to escalate privileges over a network, potentially gaining elevated access to affected systems. The vulnerability’s CVSS score has been rated at 10.0, indicating maximum severity and an ease of exploitation that poses significant risk if left unmitigated. Microsoft confirmed that there is no required action from affected organisations to implement these patches, as the updates are automatically applied.

Who is affected

Organisations running Microsoft Azure AI Foundry are impacted by this security flaw. The vulnerability affects deployments where the platform’s critical functions are exposed without sufficient authentication controls. As no particular patch version or environment is specified beyond the affected component, all instances of Azure AI Foundry are considered vulnerable until the available updates are applied.

Recommended actions

  1. Ensure that system patches related to Azure AI Foundry have been applied as provided by Microsoft, since no manual customer action is required, and updates are automatically distributed.
  2. Review and monitor network traffic for any suspicious activity indicative of exploitation attempts, especially around functions that do not enforce authentication.
  3. Implement standard network security measures, including segmenting affected services and maintaining robust perimeter protections, to reduce exposure to unauthorised access.
  4. Maintain an activity monitoring and alerting framework capable of identifying abnormal privilege escalations or anomalous access patterns.

Indicators of compromise

Specific indicators of compromise have not been provided at this time.

Affected

Vendors: Microsoft

Products: Azure AI Foundry

Is your organisation exposed?

Argos matches live threat intelligence to your own asset inventory and tells you what actually affects you.

Discover Argos

At a glance

Severitycritical
CVSS10
CVECVE-2026-85889
PublishedSeptember 18, 2026
VendorMicrosoft
ProductsAzure AI Foundry

Get in touch

We respond within 1 hour on weekdays
Exeo Logo White Transparent