Sunday, 13 September 2026
8 agent hacks today 7 vs yesterday (1)

Multiple Microsoft Copilot vulnerabilities disclosed, including workspace escape and data exposure

NVD published several Copilot vulnerabilities in June 2026, including missing authentication and command injection in Microsoft 365 Copilot, an open redirect in Copilot Business Chat, and a GitHub Copilot 1.372.0 flaw allowing filesystem access outside the workspace folder without user approval, enabling exfiltration via indirect prompt injection.

Disclosed 18 June 2026 · Record updated 13 September 2026

Impact

Unauthorized network attackers could disclose information, tamper with data, or elevate privileges in Microsoft 365 Copilot; GitHub Copilot could read files outside the approved workspace and potentially exfiltrate them when indirect prompt injection is present.

Our coverage

No articles linked to this incident yet.

Sources

  1. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-54130
  2. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-42895
  3. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2026-47645
  4. nvd.nist.govhttps://nvd.nist.gov/vuln/detail/CVE-2025-66389