Junglewise Threat Intelligence

CVE-2026-42824: Microsoft M365 Copilot command injection information disclosure

CVE-2026-42824 · Severity: medium · CVSS 6.5 · Published 2026-06-04

Executive brief

A vulnerability in Microsoft 365 Copilot, an AI-powered productivity tool, could allow an unauthorized attacker to access sensitive information. By tricking a user into a specific interaction, an attacker can exploit a flaw in how the system processes commands to leak data over the network. This could result in the unauthorized disclosure of private business or personal information handled by the AI assistant.

Technical details

A command injection vulnerability (CWE-77) exists in Microsoft 365 Copilot due to improper neutralization of special elements used in commands. The vulnerability is reachable over the network and requires no elevated privileges, though it does require some level of user interaction (UI:R). An attacker can exploit this flaw to bypass security boundaries and disclose information to an unauthorized destination. Microsoft has classified this as a medium-severity issue with a high impact on confidentiality but no impact on integrity or availability.

Affected products

  • Microsoft M365 Copilot

Timeline

  • 2026-06-04: disclosed
  • 2026-06-04: advisory: Original MSRC advisory published

References

Related threats