# Microsoft Fixes Critical Vulnerability in Azure AI Foundry

*Published September 21, 2026*
*Source: [https://cybersecuritynews.com/microsoft-azure-ai-foundry-vulnerability/](https://cybersecuritynews.com/microsoft-azure-ai-foundry-vulnerability/)*

## Executive Summary

*This is a Premium edition. The Executive Summary is available to sec-news.ai members —*
*[read it here](https://www.sec-news.ai/news/microsoft-fixes-critical-vulnerability-in-azure-ai-foundry) or [see plans](https://www.sec-news.ai/pricing).*

## Article

Microsoft has addressed a significant security vulnerability in its Azure AI Foundry platform. This flaw, identified as CVE-2026-85889, had the potential to allow an unauthenticated attacker to escalate privileges over the network without user interaction. The vulnerability, rated with a maximum CVSS score of 10.0, was due to a missing authentication check for a critical function within the platform.

The vulnerability was particularly concerning given the platform's role as a central hub for enterprises deploying generative AI models and workflows. An attacker exploiting this flaw could have gained the same control as a privileged user, potentially exposing sensitive data and resources linked to Foundry-based applications. Fortunately, Microsoft found no evidence of active exploitation or circulating proof-of-concept code for this issue.

Credit for discovering the vulnerability goes to security researcher Rémy Marot, who reported it via Microsoft's coordinated vulnerability disclosure program. Microsoft has since deployed a complete backend fix, ensuring that customers using Azure AI Foundry do not need to take any additional steps to secure their systems.

This disclosure comes as part of a broader effort by Microsoft to address multiple critical vulnerabilities, including issues in Microsoft 365 Copilot and Azure Database for PostgreSQL, both rated 9.9 in severity. The company also released updates for Windows 11 to fix other critical issues. Despite the lack of evidence for exploitation, the severity of CVE-2026-85889 highlights the importance of staying informed about security advisories, especially in cloud environments where patching is managed by the service provider.
