High
nvd
·
CVE-2026-45497
CVE-2026-45497: Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an autho
Published Jun 4, 2026
CVSS 7.7
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.
Affected AI Products
copilot