Sep 2026: Azure AI Foundry Elevation of Privilege Vulnerability
CVE-2026-85889 Published on September 17, 2026

Azure AI Foundry Elevation of Privilege Vulnerability
Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

Vendor Advisory NVD

Weakness Type

Missing Authentication for Critical Function

The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.


Products Associated with CVE-2026-85889

Want to know whenever a new CVE is published for Microsoft Azure Ai Foundry? stack.watch will email you.

 

Affected Versions

Microsoft Azure AI Foundry Version - is affected by CVE-2026-85889