CVE-2026-78501 | Microsoft 365 Copilot Business Chat command injection

SecurityVulns

A vulnerability has been found in Microsoft 365 Copilot and classified as problematic. This affects an unknown function of the component Business Chat. This manipulation causes command injection.

This vulnerability is registered as CVE-2026-78501. Remote exploitation of the attack is possible. No exploit is available.

This product is available as a managed service. Users are not able to maintain vulnerability countermeasures themselves.VulDB Recent EntriesRead More