Microsoft Patches Critical Entra ID Flaw (CVSS 10.0)
Microsoft has released patches for a maximum-severity vulnerability in its Entra ID identity and access management (IAM) platform. This flaw, initially reported as exploited in the wild, was later clarified by Microsoft as not having been actively exploited. The vulnerability, with a CVSS score of 10.0, could allow remote code execution, making immediate patching crucial for organizations using Entra ID.