SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-80098

CRITICAL · CVSS 9.3 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-09-03 · Last synced 2026-09-08

CyberRota Analysis

AI-Generated

A critical vulnerability exists in Copilot Studio due to improper verification of cryptographic signatures, enabling unauthorized attackers to elevate their privileges remotely. This flaw poses a significant risk to any organization utilizing the affected product, as it could lead to unauthorized access and control over sensitive systems. Organizations should prioritize patching this vulnerability to mitigate potential exploitation risks.

CVE
CVE-2026-80098
Severity
CRITICAL
CVSS
9.3
EPSS
0.29%

Original NVD Description

Improper verification of cryptographic signature in Copilot Studio allows an unauthorized attacker to elevate privileges over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)