Microsoft 365 Copilot BizChat Information Disclosure Vulnerability

Vulnerability

A critical information disclosure vulnerability has been identified in Microsoft 365 Copilot's Business Chat. This vulnerability allows unauthorized access to sensitive information. It affects all users of this service, as no specific action is required to address the issue.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information.

Added: Aug 7, 2025, 9:23 PM
Updated: Aug 7, 2025, 9:39 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.