Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product 365 Word Copilot
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-59252 1 Microsoft 1 365 Word Copilot 2025-11-22 N/A 9.3 CRITICAL
Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to perform spoofing over a network.