CVE-2025-59272

Publication date

2025-10-09 21:04:14

Family

microsoft

State

PUBLISHED

Description

Improper neutralization of special elements used in a command (command injection) in Copilot allows an unauthorized attacker to perform information disclosure locally.