PT-2025-32315 · Microsoft · M365 Copilot

Luke Papandrea

·

Published

2025-08-07

·

Updated

2025-08-14

·

CVE-2025-53787

CVSS v2.0

8.5

High

VectorAV:N/AC:L/Au:N/C:C/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft 365 Copilot (affected versions not specified)
Description This issue involves information disclosure within the Microsoft 365 Copilot BizChat feature.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Command Injection

Weakness Enumeration

Related Identifiers

BDU:2025-10043
CVE-2025-53787

Affected Products

M365 Copilot