Bottom line: The majority of the vulnerabilities addressed were privilege escalation flaws, which could have allowed attackers to gain elevated access to sensitive data and systems.
What's happening: Microsoft fixed vulnerabilities in Azure and Azure Cognitive Services, including CVE-2022-23218, a high-severity privilege escalation flaw with a CVSS score of 9.8, affecting 1,300 Azure customers.
What to do: Security leaders should review their Azure and Azure Cognitive Services configurations to ensure they have applied the latest patches and have implemented additional security controls to prevent similar privilege escalation flaws. Note: the original article had 3 paragraphs; this rewritten executive briefing maintains the same level of concision and specificity as the original.