Security Advisory

CVE-2026-50517

9.9
CRITICAL

Vulnerability Description

Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network.
Published Date July 24, 2026
Official Source NIST NVD Advisory