Summary
Microsoft Copilot Studio is a low-code platform for building AI agents and agent flows. This cloud-service flaw let unauthenticated network attackers view sensitive information from Copilot Studio without any user interaction. The impact is confidentiality loss rather than code execution or service disruption.
Why Planned Fix?
4/6Exploitation Details
Read sensitive information from Copilot Studio
Data DisclosureAffected Software
| Product | Affected Versions |
|---|---|
| Microsoft Copilot Studio | all versions |
Microsoft Copilot Studio is a graphical, low-code tool for building AI agents and agent flows that can connect to other data sources and business systems.
Affected ComponentCopilot Studio cloud service backend and web authoring portal handling agent and information-access requests.
Copilot Studio cloud service backend and web authoring portal handling agent and information-access requests.
Affected Endpoints(1)https://copilotstudio.microsoft.com
Not available
Not available
Not available
Probability of exploitation in the next 30 days
Worse than 26% of all CVEs
No known threat actors
No detection rules available
NVD Data
Description Summary
CVSS Base Score
CVSS Vector (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
Affected Software (CPE) (1)
- •cpe:2.3:a:microsoft:copilot_studio:-:*:*:*:*:*:*:*
Sources
| Source | Article |
|---|---|
| msrc.microsoft.com | Copilot Studio Information Disclosure Vulnerability - CSAF |
| msrc.microsoft.com | Security Update Guide - CVE-2026-21520 |
| nvd.nist.gov | CVE-2026-21520 Detail |
| learn.microsoft.com | Overview - Microsoft Copilot Studio |
| learn.microsoft.com | Configure user authentication in Copilot Studio |
| tenable.com | CVE-2026-21520 |
Priority History
Initial analysis