An authenticated attacker can bypass Server-Side Request Forgery (SSRF) protection in Microsoft Copilot Studio to leak sensitive information over a network.
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds