VYPR
Critical severity9.3NVD Advisory· Published Jan 22, 2026· Updated Jun 17, 2026

CVE-2026-24307

CVE-2026-24307

Description

Improper validation of specified type of input in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.