Executive brief
Microsoft Copilot in Azure is an AI assistant service integrated into Azure cloud services. A server-side request forgery vulnerability allows authorized users to make the service fetch or interact with internal or external resources on their behalf, potentially exposing sensitive information not intended for their access.
Technical details
A server-side request forgery (SSRF) vulnerability exists in Microsoft Copilot in Azure that allows authenticated attackers to manipulate the service into making unauthorized requests to internal or external resources. The vulnerability requires attacker authorization (authenticated access to Copilot), and the attack vector is network-based. An attacker can leverage this to disclose sensitive information accessible from the server or internal network. Patches are expected from Microsoft through their standard security update channel.
Affected products
- Microsoft Copilot in Azure
Timeline
- 2026-08-20: disclosed