Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 12 May 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft 365 Copilot Android
|
|
| Vendors & Products |
Microsoft 365 Copilot Android
|
Tue, 12 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally. | |
| Title | Microsoft 365 Copilot for Android Spoofing Vulnerability | |
| First Time appeared |
Microsoft
Microsoft 365 Copilot Android |
|
| Weaknesses | CWE-284 | |
| CPEs | cpe:2.3:a:microsoft:365_copilot_Android:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft 365 Copilot Android |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-05-12T17:53:51.744Z
Reserved: 2026-04-16T19:12:36.195Z
Link: CVE-2026-41100
No data.
Status : Received
Published: 2026-05-12T18:17:21.507
Modified: 2026-05-12T18:17:21.507
Link: CVE-2026-41100
No data.
OpenCVE Enrichment
Updated: 2026-05-12T21:15:27Z
Weaknesses