SEPTEMBER 12, 2026
Live Feed
Back to database
Case File

CVE-2026-58617

HIGH · CVSS 8.1 EPSS 0.74%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

Microsoft 365 Copilot for iOS is vulnerable due to improper access control, enabling unauthorized attackers to elevate their privileges remotely. This flaw poses a significant risk to organizations using this application, as it could lead to unauthorized access to sensitive data and functionalities. Enterprises utilizing Microsoft 365 Copilot should prioritize addressing this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-58617
Severity
HIGH
CVSS
8.1
EPSS
0.74%
Microsoft

Original NVD Description

Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)