CVE-2026-85889 is a CVSS 10.0 maximum-severity elevation of privilege vulnerability in Microsoft Azure AI Foundry, disclosed and patched by Microsoft on 17 September 2026. The flaw stems from missing authentication for a critical function, permitting an unauthenticated remote attacker to elevate privileges over a network without any user interaction.
Microsoft has confirmed the fix was applied at the service level. Because Azure AI Foundry is a managed cloud service, no customer action is required. There is no evidence of exploitation in the wild at the time of disclosure, and no public proof-of-concept exploit has been observed.
The CVSS 10.0 score reflects the combination of network-accessible attack surface, zero authentication requirement, and the severity of the privilege escalation outcome. Organisations consuming Azure AI Foundry workloads should verify service-side patch status through the Microsoft Security Response Center advisory and monitor for any anomalous activity in their AI Foundry environments as a precautionary measure.
Each brief contains detailed narrative, impact assessments, technical analysis, IOCs and response recommendations, all available inside the Deltabridge platform.
We use analytics cookies to understand how visitors use Deltabridge and improve the site. They’re off until you accept. See our Privacy Policy.