top of page

Microsoft Patches Critical Azure AI Face Service Vulnerability

Dwain.B

4 Feb 2025

CVSS 9.9 Flaw Addressed to Prevent Privilege Escalation

Microsoft has released patches for two critical security vulnerabilities affecting Azure AI Face Service and Microsoft Account. The most severe flaw, CVE-2025-21415, with a CVSS score of 9.9, allowed authentication bypass and privilege escalation. Researchers warned that attackers could exploit this to gain unauthorized access to sensitive data. Microsoft has fully mitigated these vulnerabilities, requiring no further action from users. The company continues to enhance security transparency in cloud services.

Read more about this security update on The Hacker News here.

© 2024 gpt-labs.ai

bottom of page