Jul 2026: M365 Copilot for iOS Elevation of Privilege Vulnerability
CVE-2026-58617 Published on July 14, 2026
M365 Copilot for iOS Elevation of Privilege Vulnerability
Improper access control in Microsoft 365 Copilot for iOS allows an unauthorized attacker to elevate privileges over a network.
Weakness Type
What is an Authorization Vulnerability?
The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
CVE-2026-58617 has been classified to as an Authorization vulnerability or weakness.
Products Associated with CVE-2026-58617
Want to know whenever a new CVE is published for Microsoft 365 Copilot Ios? stack.watch will email you.
Affected Versions
Microsoft 365 Copilot for iOS:- Version 1.0 and below 2.111.4 is affected.