📦 Copilot Studio

by Microsoft

🔍 What is Copilot Studio?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-49038

CRITICAL CVSS 9.3 Nov 26, 2024

This is a cross-site scripting (XSS) vulnerability in Microsoft Copilot Studio that allows an unauthorized attacker to inject malicious scripts into web pages. When exploited, it enables privilege esc...

CVE-2026-21520

HIGH CVSS 7.5 Jan 22, 2026

CVE-2026-21520 is an information disclosure vulnerability in Microsoft Copilot Studio that allows unauthenticated attackers to access sensitive information through network attacks. This affects organi...

CVE-2024-38206

HIGH CVSS 8.5 Aug 6, 2024

An authenticated attacker can bypass SSRF protection in Microsoft Copilot Studio to make unauthorized requests to internal network resources, potentially leaking sensitive information. This affects or...