Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.
CVE-2026-24307 M365 Copilot Information Disclosure Vulnerability
Published January 23, 2026
Published January 23, 2026
Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.