← Microsoft Copilot security brief

Microsoft Copilot change history

Every security, compliance, and legal-policy change Swanum has detected for Microsoft Copilot — new CVEs, certification changes, and terms-of-service updates. Each entry is generated deterministically from the underlying evidence and re-checked continuously.

Jun 27, 2026
critical tos clause
The Privacy Policy was substantially rewritten — 13 removed, 13 added. Review the current version.
Jun 17, 2026
notice cve
2 new CVEs (published from 2026-06-04): CVE-2026-42824, CVE-2026-45497. 2 of these have no vendor fix listed yet (CVE-2026-42824, CVE-2026-45497).
Jun 16, 2026
minor sec incident
MICROSOFT CORP disclosed a material cybersecurity incident to the SEC (Form 8-K, Item 1.05) on 2024-01-19.
Jun 16, 2026
notice cve
2 new CVEs (published from 2026-06-04): CVE-2026-42824, CVE-2026-45497. 2 of these have no vendor fix listed yet (CVE-2026-42824, CVE-2026-45497).
Jun 15, 2026
notice cve
2 new CVEs (published from 2026-06-04): CVE-2026-42824, CVE-2026-45497. 2 of these have no vendor fix listed yet (CVE-2026-42824, CVE-2026-45497).
Jun 8, 2026
minor cve
1 new CVE (published from 2026-03-19): CVE-2026-26136. 1 of these have no vendor fix listed yet (CVE-2026-26136).