Description
Multiple vulnerabilities were found in Microsoft Apps. Malicious users can exploit these vulnerabilities to spoof user interface, bypass security restrictions.
Below is a complete list of vulnerabilities:
- A spoofing vulnerability in Microsoft 365 Copilot for Android can be exploited remotely to spoof user interface.
- A spoofing vulnerability in Microsoft Office can be exploited remotely to spoof user interface.
- A spoofing vulnerability in Microsoft Word for Android can be exploited remotely to spoof user interface.
- A spoofing vulnerability in M365 Copilot for Desktop can be exploited remotely to spoof user interface.
Original advisories
Exploitation
Related products
CVE list
- CVE-2026-41100 warning
- CVE-2026-41101 high
- CVE-2026-41614 high
- CVE-2026-42832 high
KB list
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!