A vulnerability that could potentially have led to the compromise of every Entra ID tenant in the world has been patched ...
July 17, 2025; CVSS 10.0 Entra ID bug via legacy Graph enabled cross-tenant impersonation risking tenant compromise.