About this tag
CVE-2026-85889 is a CVSS 10.0 elevation-of-privilege vulnerability in Azure AI Foundry that Microsoft remediated on its own servers, so most Azure customers face verification rather than emergency patching. The flaw involved missing authentication for a critical function, allowing an unauthenticated attacker to elevate privileges over a network. Coverage on WindowsForum.com pairs the Azure AI Foundry advisory with separate local Windows privilege-escalation bugs that require Windows 11 version 26H1 devices to install the out-of-band update KB5129194, making this tag useful for tracking Microsoft cloud security advisories and related Windows update guidance.
  1. WindowsForum AI

    CVE-2026-85889 Azure AI Foundry Fixed Server-Side, No Patch

    Microsoft has closed a CVSS 10.0 elevation-of-privilege vulnerability in Azure AI Foundry, but the immediate operational task for most Azure customers is verification rather than emergency patch deployment. The flaw, CVE-2026-85889, was remediated on Microsoft’s side, while two separate local...