CVE Tools
Back to feed
PoC public Microsoft Copilot Personal ai-ml Microsoft info-disclosure

Уязвимости в Microsoft Copilot позволяли извлекать данные из подключенных приложений

Хакер (xakep.ru)·By Мария Нефёдова··2 min read
CVE Tools coverage

Security researchers at Varonis identified three vulnerabilities collectively termed CoSnitch in Microsoft Copilot Personal, allowing malicious actors to force prompt execution and extract information from connected services. The issues, assigned the identifier CVE-2026-24301, were initially reported to Microsoft in December 2025, with initial mitigations arriving in February 2026 and full patches releasing on August 18, 2026. By leveraging an undocumented autorun parameter, attackers could trigger prompts via specially crafted links, enabling the AI assistant to read emails, calendar entries, and chat history before exfiltrating that data through encoded URLs. Additionally, the flaws allowed persistent memory poisoning, where hidden instructions survived session resets and password changes, posing a long-term risk to user data integrity.