logo

Microsoft, Salesforce Patch AI Agent Data Leak Flaws

ID: 7a3d2360-2086-501b-902f-78907295a148

STIX ID: report--7a3d2360-2086-501b-902f-78907295a148

Feed Name: Dark Reading

Threat Score
65/100

Date Published: 2026-04-15

Date Updated: 2026-04-22

Author: Alexander Culafi

...
...

Capsule Security disclosed prompt-injection flaws in Salesforce Agentforce (PipeLeak) and Microsoft Copilot/SharePoint (ShareLeak, CVE-2026-21520) that allow attackers to embed malicious instructions in public form inputs to trigger agents to exfiltrate data; vendors have remediated the issues, and Capsule recommends treating external inputs as untrusted, applying input sanitation and prompt boundaries, disabling email actions for untrusted inputs, requiring human review for CRM emails, and logging agent data access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.