microsoft 365_copilot の CVE(14 件)

CVE 件数: 14 CPE versions: View versions table

概要

本ページは microsoft 365_copilot に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。

表示中 114 / 14 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-47645 Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges over a network. [email protected] 8.8 0.42% 2026-06-19 2026-06-26
CVE-2026-42895 Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network. [email protected] 6.5 0.39% 2026-06-19 2026-06-26
CVE-2026-54130 Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 9.8 0.58% 2026-06-18 2026-06-25
CVE-2026-42824 Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 6.5 7.64% 2026-06-04 2026-06-19
CVE-2026-42827 Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 6.5 0.50% 2026-05-22 2026-06-17
CVE-2026-41090 Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to perform tampering over a network. [email protected] 9.3 0.42% 2026-05-22 2026-06-17
CVE-2026-41614 Improper access control in M365 Copilot for Desktop allows an unauthorized attacker to perform spoofing locally. [email protected] 6.2 0.36% 2026-05-12 2026-06-17
CVE-2026-41100 Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally. [email protected] 4.4 0.25% 2026-05-12 2026-06-17
CVE-2026-33102 Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorized attacker to elevate privileges over a network. [email protected] 9.3 0.39% 2026-04-23 2026-06-17
CVE-2026-24299 Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 5.3 0.63% 2026-03-19 2026-06-17
CVE-2026-26133 AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 7.1 0.43% 2026-03-16 2026-06-17
CVE-2026-24307 Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 9.3 0.81% 2026-01-22 2026-06-17
CVE-2025-32711 Ai command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 9.3 5.78% 2025-06-11 2026-06-17
CVE-2021-43905 Microsoft Office app Remote Code Execution Vulnerability [email protected] 9.6 2.82% 2021-12-15 2026-06-17
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence