Microsoft Entra ID RCE sealed server-side
Microsoft mitigated CVE-2026-69836, a CVSS 10.0 Entra ID deserialization RCE, on the server side with no customer action required. Security teams should still verify tenant logs and provider status for identity-plane assurance.