VYPR

365 Word Copilot

by Microsoft

CVEs (2)

  • CVE-2025-59252CriOct 9, 2025
    risk 0.60cvss 9.3epss 0.01

    Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-21521HigJan 22, 2026
    risk 0.48cvss 7.4epss 0.01

    Improper neutralization of escape, meta, or control sequences in Copilot allows an unauthorized attacker to disclose information over a network.