Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
Microsoft has patched a critical security flaw (CVE-2026-85889) in Azure AI Foundry, allowing unauthorized privilege escalation. The vulnerability, alongside several others, has been addressed through out-of-band updates, and no user action is required. Multiple related vulnerabilities, including one exploited in an active espionage-aligned threat actor campaign, have also been resolved.
Microsoft has released fixes for a maximum-severity security vulnerability in Azure AI Foundry, tracked as CVE-2026-85889. This flaw enables an unauthorized attacker to elevate privileges over a network, requiring no action from users. The vulnerability was discovered and reported by security researcher Rémy Marot (@R_Marot).
Alongside this critical vulnerability, Microsoft has also patched several other flaws, including CVE-2026-85885 (CVSS score: 9.9) – a command injection vulnerability in Microsoft 365 Copilot – and CVE-2026-85921 (CVSS score: 8.2) – a double free vulnerability in Windows Secure Kernel Mode. These vulnerabilities also allow an authorized attacker to elevate privileges.
Separately, Microsoft addressed CVE-2026-62721 (CVSS score: 7.8) – an insufficient granularity of access control in Windows User-Mode Power Service (UMPS) – which could allow an authorized attacker to elevate privileges locally and gain SYSTEM privileges.
Notably, the ALPC vulnerability (CVE-2026-85885) has been linked to an active exploitation campaign by multiple espionage-aligned threat actors, who leveraged it in conjunction with two Google Chrome flaws to develop an exploit kit called BlueMoon. These updates were delivered through out-of-band updates for Windows 11, version 26H1, including KB5129194 for arm64-based systems and KB5129194 for x64-based systems.
Microsoft previously addressed 974 vulnerabilities across its software portfolio in an earlier update.
