CVE-2026-32213Disclosure(microsoft / azure_ai_foundry)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft azure_ai_foundry systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-285CWE-863

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • azure_ai_foundry

Threat summary

  • Patch or workaround signal is available
  • 11 mentions across 5 observed days
  • Momentum state: declining

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 11 signals
  • Disclosure: 8 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 7 mentions (2026-04-03); latest day: 1
  • 11 total mentions across 5 days

Affected systems

Vendors
Products
azure_ai_foundry

1 version affected across 1 product

Deep dive

Activity timeline11 mentions / 5d
02457Mentions · 2026-04-03: 7Mentions · 2026-04-07: 1Mentions · 2026-04-08: 1Mentions · 2026-04-11: 1Mentions · 2026-04-14: 1Patch / Workaround · 2026-04-07: 1Patch / Workaround · 2026-04-08: 1Technical Details · 2026-04-03: 7Technical Details · 2026-04-07: 1Technical Details · 2026-04-08: 1Technical Details · 2026-04-11: 1Technical Details · 2026-04-14: 104-0304-0704-0804-1104-14
Signal classification3 categories
Disclosure
872.7%
Patch
218.2%
General
19.1%
Referenced assets10 URLs
Classification over time
DateTotalLabels
2026-04-037
Disclosure6General1
2026-04-071
Patch1
2026-04-081
Patch1
2026-04-111
Disclosure1
2026-04-141
Disclosure1
Full discourse11 posts
  • NY-squared AI@NYsquaredAI
    Patch

    BREAKING: Microsoft April patches include 2 critical AI platform CVEs CVE-2026-32213: Azure AI Foundry (CVSS 10) CVE-2026-32211: Azure MCP Server (CVSS 9.1) CVSS 10 = full privilege escalation, no auth CVSS 9.1 = data leak, no auth needed #Cybersecurity #Azure

    Post summary

    Microsoft announced that its April patch set addresses two critical Azure AI platform CVEs (CVE-2026-32213 and CVE-2026-32211), which pose high impact risks such as full privilege escalation and data leakage, providing fixes for these vulnerabilities.

    1001093
    29 followersView on X
  • NCIIPC India@NCIIPC
    Patch

    #Microsoft released Security Update to address an Elevation of Privilege Vulnerability in Microsoft Azure AI Foundry. #CVE-2026-32213 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32213

    Post summary

    Microsoft issued a security update for CVE‑2026‑32213, an elevation‑of‑privilege flaw in Azure AI Foundry.

    00001119
    8.4K followersView on X
  • dbugs@ptdbugs
    Disclosure

    Azure AI Foundry Elevation of Privilege Vulnerability CVE: CVE-2026-32213 PT ID: PT-2026-29905 Vendor: Microsoft Product: Azure AI Foundry CVSS: 10.0 Credits: n/a Description: Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network. References: • https://dbugs.ptsecurity.com/vulnerability/CVE-2026-32213 • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-32213 #dbugs_vuln

    Post summary

    The post announces the disclosure of CVE-2026-32213, an elevation of privilege vulnerability in Azure AI Foundry, detailing its improper authorization flaw and CVSS score, but offers no PoC, exploit, or patch information.

    0000193
    768 followersView on X
  • maruomosquit@maru1151157
    Disclosure

    🚨 CVE-2026-32213 (CVSS: 10.0) 「CVE-2026-32213: Azure AI Foundryの認証不備により、ネットワーク経由で未認証攻撃者が権限昇格可能。対策: 認証機構の修正。」 https://maruomosquit.com/vulnerability/CVE-2026-32213/ #脆弱性 #セキュリティ

    Post summary

    The tweet announces CVE-2026-32213, an authentication flaw in Azure AI Foundry that allows unauthenticated privilege escalation (CVSS 10.0), but it does not provide a PoC, exploit, active use, or patch information.

    0000016
    1.4K followersView on X
  • IntegSec@integ_sec
    Disclosure

    CVE-2026-32213: Azure AI Foundry Privilege Escalation - What It Means for Your Business and How to Respond https://hubs.li/Q04bwHD40

    Post summary

    The provided text references CVE-2026-32213, a privilege escalation issue in Azure AI Foundry, but offers only a high‑level overview without any PoC, exploit details, or evidence of active exploitation.

    0000031
    28 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32213 Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network. https://www.cve.org/CVERecord?id=CVE-2026-32213

    Post summary

    A new CVE (CVE-2026-32213) has been disclosed for Azure AI Foundry, where improper authorization can enable privilege escalation over a network. No proof of concept, active exploitation, or patch information is provided.

    00000101
    56.9K followersView on X
  • CTIWatch@ctiwatchcloud
    Disclosure

    🔍 Today's Top Vulnerabilities 🔴 CVE-2026-32213 | CVSS 10.0 🔴 CVE-2026-32871 | CVSS 10.0 🔴 CVE-2026-33105 | CVSS 10.0 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The post announces three high‑severity CVEs (2026‑32213, 2026‑32871, 2026‑33105) with CVSS scores of 10.0, but it does not provide PoC, exploit details, or mitigation information.

    0000036
    5.6K followersView on X
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-32213 📊 Severity: 10.0 🚨 Risk Level: Critical 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-32213 #CVE-2026-32213 #CVE #Critical #CyberSecurity #InfoSec https://t.co/ASM0pk9Y6W

    Post summary

    The message announces a new critical CVE (CVE-2026-32213) with severity rating 10.0, but provides no further technical details, exploit info, or mitigation guidance.

    0000039
    123 followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-32213 - Azure AI Foundry Elevation of Privilege Vulnerability Intel Report: https://ift.tt/zQWTPR0

    Post summary

    The tweet announces the discovery of a new elevation‑of‑privilege vulnerability (CVE‑2026‑32213) in Azure AI Foundry.

    0000076
    282 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-32213 - Critical Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network. https://www.thehackerwire.com/vulnerability/CVE-2026-32213/ https://t.co/09mz6RSNxg

    Post summary

    A critical improper‑authorization flaw (CVE‑2026‑32213) in Azure AI Foundry could allow an attacker to elevate privileges over the network.

    0000041
    160 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-32213: CRITICAL] Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.#cve,CVE-2026-32213,#cybersecurity https://cvefind.com/CVE-2026-32213

    Post summary

    CVE-2026-32213 is an improper authorization flaw in Azure AI Foundry that could allow privilege elevation over a network; the post provides only a brief vulnerability description without any PoC, exploit, or patch details.

    0000046
    610 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftazure_ai_foundry---

Explore more