CVE-2025-53774 | Microsoft 365 Copilot Business Chat command injection (EUVD-2025-23956 / WID-SEC-2025-1746)
A vulnerability, which was classified as critical, has been found in Microsoft 365 Copilot Business Chat. This issue affects some unknown processing. The manipulation leads to command injection.
The identification of this vulnerability is CVE-2025-53774. The attack may be initiated remotely. There is no exploit available.
This product is a managed service. It is not possible for users to maintain vulnerability countermeasures themselves.