microsoft 365_copilot_chat CVE Vulnerabilities (7)

CVEs: 7 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting microsoft 365_copilot_chat (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-26164 Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 7.5 0.07% 2026-05-07 2026-06-01
CVE-2026-26129 Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 7.5 0.06% 2026-05-07 2026-06-01
CVE-2026-26137 Server-side request forgery (ssrf) in Microsoft Exchange allows an authorized attacker to elevate privileges over a network. [email protected] 9.9 0.04% 2026-03-19 2026-03-27
CVE-2025-59286 Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to disclose information over a network. [email protected] 9.3 0.08% 2025-10-09 2025-12-11
CVE-2025-59272 Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to perform information disclosure locally. [email protected] 9.3 0.08% 2025-10-09 2025-12-11
CVE-2025-53787 Microsoft 365 Copilot BizChat Information Disclosure Vulnerability [email protected] 8.2 2.79% 2025-08-07 2025-08-14
CVE-2025-53774 Microsoft 365 Copilot BizChat Information Disclosure Vulnerability [email protected] 6.5 2.01% 2025-08-07 2025-08-14
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence