
Microsoft Addresses Critical Entra ID Vulnerability Allowing Global Admin Impersonation Across Tenants
A critical vulnerability in Microsoft’s Entra ID (formerly Azure Active Directory) could have allowed attackers to impersonate any user, including Global Administrators, across all tenants. This flaw, designated as CVE-2025-55241, has a maximum CVSS score of 10.0 and represents a




