The Microsoft applications are vulnerable to an OAuth authentication flaw that could enable Azure account takeover.
Source: Threadpost