CVE-2026-54130Disclosure(microsoft / 365_copilot)

MEDIUMCVSS 7.5 · HIGH

Exploitation observed; activity peaked at 5 mentions and remains active

Immediate actions

  • Patch microsoft 365_copilot systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

Missing authentication for critical function in M365 Copilot allows an unauthorized attacker to disclose information over a network.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • 365_copilot

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 6 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 6 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 5 mentions (2026-06-19); latest day: 1
  • 6 total mentions across 2 days

Affected systems

Vendors
Products
365_copilot

1 version affected across 1 product

Deep dive

Activity timeline6 mentions / 2d
01345Mentions · 2026-06-19: 5Mentions · 2026-06-25: 1Active Exploitation · 2026-06-19: 1Patch / Workaround · 2026-06-19: 1Patch / Workaround · 2026-06-25: 1Technical Details · 2026-06-19: 5Technical Details · 2026-06-25: 106-1906-25
Signal classification3 categories
Disclosure
466.7%
Active Exploitation
116.7%
Patch
116.7%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-06-195
Active Exploitation1Disclosure4
2026-06-251
Patch1
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoft365_copilot---

Explore more