Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Michael Van Leeuwen

Researcher fromMicrosoft
#14210of 53,633
18.9Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2026-26355
9.9
2026-03-19
Microsoft · M365 Copilot · CVE-2026-26137
**Name of the Vulnerable Software and Affected Versions** Microsoft 365 Copilot's Business Chat (affected versions not specified) **Description** An authorized attacker can elevate privileges over a network due to a server-side request forgery (SSRF) issue in Microsoft 365 Copilot's Business Chat. Server-side request forgery occurs when an application allows an attacker to make requests to unintended locations. This can potentially lead to unauthorized access to internal resources or data. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-5092
9.0
2023-09-12
Microsoft · Azure Devops Server · CVE-2023-33136
**Name of the Vulnerable Software and Affected Versions** Azure DevOps Server (affected versions not specified) **Description** The issue is related to insufficient input validation in Azure DevOps Server, which can be exploited by a remote attacker using specially crafted data to execute arbitrary code. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.