Known Vulnerabilities for M365 by Ui
Listed below are 3 of the newest known vulnerabilities associated with "M365" by "Ui".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Ui M365
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42893 json | Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized at... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-41614 json | Improper access control in M365 Copilot for Desktop allows an unauthorized attacker to perform spoofing locally. | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-41100 json | Improper access control in M365 Copilot allows an authorized attacker to perform spoofing locally. | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-35435 json | Improper access control in Azure AI Foundry M365 published agents allows an unauthorized attacker to elevate privileges over ... | Not Provided | 2026-05-07 | 2026-05-08 |
| CVE-2026-33102 json | Url redirection to untrusted site ('open redirect') in M365 Copilot allows an unauthorized attacker to elevate privileges ove... | Not Provided | 2026-04-23 | 2026-04-28 |
| CVE-2026-26164 json | Improper neutralization of special elements in output used by a downstream component ('injection') in M365 Copilot allows an ... | Not Provided | 2026-05-07 | 2026-05-08 |
| CVE-2026-26133 json | AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. | Not Provided | 2026-03-16 | 2026-04-09 |
| CVE-2026-26129 json | Improper neutralization of special elements in M365 Copilot allows an unauthorized attacker to disclose information over a ne... | Not Provided | 2026-05-07 | 2026-05-07 |
| CVE-2020-8171 json | We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities fou... | 9.8 - CRITICAL | 2020-05-26 | 2020-05-28 |
| CVE-2020-8170 json | We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities fou... | 6.1 - MEDIUM | 2020-05-26 | 2020-05-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Ui | M365 | - |