![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEirFZkfpBrR0B-5ygBrUJU7QwN-JvyB908Iz9tLmuyGZvJyZ2Xh8QEDtjdXSXzVj0bx8fMnuUedpKxB1k3oR4eMZNvayU0HC9NYe7M3YALHFRHJKN-RGoWboh11oWZZ0trgU2yKWRltaVMRLtgBpr2KUFQET2jcrnAEgsvKQ0ScMY_KkxArRMfoumGSqMg/s1600/ms.png)
Microsoft has released patches to address two Critical-rated security flaws impacting Azure AI Face Service and Microsoft Account that could allow a malicious actor to escalate their privileges under certain conditions.
The flaws are listed below –
CVE-2025-21396 (CVSS score: 7.5) – Microsoft Account Elevation of Privilege Vulnerability
CVE-2025-21415 (CVSS score: 9.9) – Azure AI Face Service
Source:: The Hackers News