Description
Improper neutralization of special elements used in a command ('command injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to execute code over a network.
Published: 2026-07-14
Score: 9.6 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is an improper neutralization of special elements used in a command, allowing an unauthorized attacker to execute code over a network via Copilot Chat in Microsoft Edge. This command‑injection flaw, classified as CWE‑77, permits arbitrary code execution on the device, potentially compromising confidentiality, integrity, and availability.

Affected Systems

Microsoft Edge Copilot for Android and Microsoft Edge Copilot for iOS are affected. No specific version ranges are provided, so any released version prior to an official fix is vulnerable.

Risk and Exploitability

The CVSS score of 9.6 indicates critical severity. While the EPSS score is under 1 %, meaning exploitation is considered unlikely, the flaw remains a high‑risk remote code execution vulnerability. The vulnerability can be triggered over a network by sending crafted content to the application, and it is not listed in CISA’s KEV catalog, so no publicly known exploits are currently documented.

Generated by OpenCVE AI on August 3, 2026 at 03:25 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Microsoft Edge Copilot for Android to the latest version as soon as an update is available.
  • Update Microsoft Edge Copilot for iOS to the latest version as soon as an update is available.
  • Ensure the Copilot app communicates only over secure, authenticated channels and block traffic from untrusted networks to reduce exposure.

Generated by OpenCVE AI on August 3, 2026 at 03:25 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 26 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Description Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network. Improper neutralization of special elements used in a command ('command injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to execute code over a network.
Title Microsoft Copilot Remote Code Execution Vulnerability Microsoft Edge Copilot Remote Code Execution Vulnerability
First Time appeared Microsoft edge Copilot
CPEs cpe:2.3:a:microsoft:365_copilot_Android:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:365_copilot_iOS:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:edge_copilot:*:*:*:*:*:android:*:*
cpe:2.3:a:microsoft:edge_copilot:*:*:*:*:*:ios:*:*
Vendors & Products Microsoft 365 Copilot Android
Microsoft 365 Copilot Ios
Microsoft edge Copilot

Wed, 15 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft 365 Copilot Android
Microsoft 365 Copilot Ios
Vendors & Products Microsoft 365 Copilot Android
Microsoft 365 Copilot Ios

Tue, 14 Jul 2026 17:15:00 +0000

Type Values Removed Values Added
Description Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to execute code over a network.
Title Microsoft Copilot Remote Code Execution Vulnerability
First Time appeared Microsoft
Microsoft 365 Copilot Android
Microsoft 365 Copilot Ios
Weaknesses CWE-77
CPEs cpe:2.3:a:microsoft:365_copilot_Android:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:365_copilot_iOS:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft 365 Copilot Android
Microsoft 365 Copilot Ios
References
Metrics cvssV3_1

{'score': 9.6, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft 365 Copilot Android 365 Copilot Ios Edge Copilot
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-08-03T22:52:37.321Z

Reserved: 2026-05-21T20:00:35.245Z

Link: CVE-2026-48561

cve-icon Vulnrichment

Updated: 2026-07-15T10:47:09.702Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T03:30:13Z

Weaknesses
  • CWE-77

    Improper Neutralization of Special Elements used in a Command ('Command Injection')