CVE Tools

Microsoft Patches 18 Vulnerabilities in AI, Cloud Products

SecurityWeekBy Eduard Kovacs

PatchAzureCopilot

Our summary

Microsoft has remediated 18 vulnerabilities affecting Azure ARC, Azure AI Foundry, Azure Logic Apps, Azure Billing, Azure HorizonDB, Azure Cosmos DB, Azure Container Registry, Microsoft Fabric, Microsoft Dataverse, Microsoft 365 Copilot, Copilot, Microsoft 365 Copilot Business Chat, Azure Machine Learning, and Azure Portal. The issues include privilege escalation, information disclosure, and spoofing flaws; Microsoft says none are known to be exploited and the server-side fixes require no customer action. Separately, Windows users must install updates for the privilege escalation flaw CVE-2026-85921, which Microsoft assesses as less likely to be exploited.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store