Critical
nvd
·
CVE-2026-50517
CVE-2026-50517: Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
Published Jul 24, 2026
CVSS 9.9
Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
Affected AI Products
copilot