Petri
Microsoft Addresses Critical Azure Automation Vulnerability CVE-2025-29827
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Microsoft has fixed a critical vulnerability in Azure Automation, tracked as CVE-2025-29827, which could allow authorized attackers to elevate privileges and access resources across Azure tenants. Discovered by Shay Shavit and reported in May 2025, the flaw has a CVSS score of 9.9 and stems from improper authorization in the service. Attackers could exploit this vulnerability remotely with low-level privileges, potentially impersonating other organizations' automation identities. Microsoft has updated the default configurations and recommends organizations to verify their Azure Automation accounts and permissions. The flaw could be combined with misconfigurations to cross trust boundaries between Azure tenants, posing a significant risk to sensitive cloud resources. Organizations are advised to apply the latest security updates and follow best practices to mitigate risks.
Key Points: • CVE-2025-29827 is a critical privilege escalation vulnerability in Azure Automation. • Attackers could exploit the flaw to access resources across Azure tenants with low-level privileges. • Microsoft has released security updates and changed default configurations to mitigate the risk.