SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-69855

HIGH · CVSS 7.7 EPSS 0.47%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Microsoft Copilot in Azure is vulnerable to a server-side request forgery (SSRF) flaw that enables authorized attackers to disclose sensitive information across the network. This high-severity vulnerability poses a significant risk to organizations utilizing Azure services, particularly those with sensitive data or critical infrastructure. Security teams and Azure administrators should prioritize remediation efforts to mitigate potential data exposure.

CVE
CVE-2026-69855
Severity
HIGH
CVSS
7.7
EPSS
0.47%
Microsoft

Original NVD Description

Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)