Back to Security Briefs
Microsoft 365 Copilot's Business Chat Elevation of Privilege vulnerabilities
1 published alerts for Microsoft Microsoft 365 Copilot's Business Chat Elevation of Privilege.
Microsoft MSRC
Microsoft 365 Copilot's Business Chat Elevation of Privilege vulnerability
Microsoft 365 Copilot's Business Chat Elevation of Privilege vulnerability (CVE-2026-47645) was added to Microsoft’s security update guidance. Url redirection to untrusted site ('open redirect') in Microsoft 365 Copilot's Business Chat allows an unauthorized attacker to elevate privileges over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.