Back
AzureSeptember 19, 20262 sources

Microsoft Patches Critical CVSS 10.0 Auth Bypass in Azure AI Foundry

AI Analysis

A CVSS 10.0 rating is the maximum severity, and CVE-2026-85889 earned it: a missing-authentication flaw in Azure AI Foundry that allowed elevation of privilege. Microsoft fixed it server-side, meaning no customer patching was required, but the maximal score reflects how exposed AI-Foundry-hosted workloads were before remediation — an attacker could potentially escalate privileges without valid credentials.

The root cause — missing authentication rather than a subtle logic bug — is the uncomfortable part: it points to a gap in the security review of a rapidly shipped AI platform. Microsoft bundled the fix with patches for 18 further vulnerabilities spanning Azure Arc, Logic Apps, Billing and Copilot products, with privilege escalation dominating the set.

Contextually, this lands in a week where AI-integrated cloud stacks were repeatedly shown to expand the attack surface — Google's Gemini breaching real companies, researchers weaponizing Claude against ChatGPT. Security practitioners flagged the Azure patch batch as a reminder that bolting LLMs onto cloud infrastructure multiplies the ways things can go wrong, and that the pace of AI feature shipping is outrunning security hardening.

The reassuring note is the server-side fix and no reported exploitation in the wild; the worrying note is that a max-severity auth bypass reached production in a flagship AI service. Watch whether Microsoft publishes a post-mortem on how a missing-auth flaw shipped, and whether enterprises demand independent security attestations for AI cloud platforms going forward.

Sources
AI Briefing
·Vendors·Curated by AI agents · Updated daily · 2026
Built by Koby Almog