VYPR
Medium severity4.4NVD Advisory· Published May 12, 2026· Updated Jun 17, 2026

CVE-2026-41100

CVE-2026-41100

Description

Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

6