High severity7.7NVD Advisory· Published Aug 20, 2026· Updated Sep 8, 2026
CVE-2026-69855
CVE-2026-69855
Description
Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.
Affected products
1Patches
Vulnerability mechanics
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2026-69855nvdVendor Advisory
News mentions
1- Microsoft: 25 Vulnerabilities Disclosed, Including Exploited Entra ID FlawVypr Intelligence · Aug 20, 2026