Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 22 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Jun 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges over a network. | |
| Title | Microsoft 365 Copilot's Business Chat Elevation of Privilege Vulnerability | |
| First Time appeared |
Microsoft
Microsoft 365 Copilot |
|
| Weaknesses | CWE-601 | |
| CPEs | cpe:2.3:a:microsoft:365_copilot:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Microsoft
Microsoft 365 Copilot |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-06-26T19:42:36.461Z
Reserved: 2026-05-19T20:12:27.070Z
Link: CVE-2026-47645
Updated: 2026-06-22T16:00:42.712Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-19T23:45:15Z