Command Injection Vulnerability in Microsoft M365 Copilot
CVE-2026-42827
6.5MEDIUM
What is CVE-2026-42827?
A command injection vulnerability in Microsoft M365 Copilot allows attackers to improperly neutralize special elements used in commands. This flaw could enable unauthorized individuals to disclose sensitive information over a network, potentially leading to further exploits. Timely updates and security measures are advisable to mitigate this risk effectively.
Affected Version(s)
Microsoft 365 Copilot -