Every Old Vulnerability Is Now an AI Vulnerability
ID: fcf1e354-61b2-51f5-884e-8cf25f937165
STIX ID: report--fcf1e354-61b2-51f5-884e-8cf25f937165
Feed Name: Dark Reading
Threat Score
Microsoft patched CVE-2026-26144, an Excel XSS that can trigger without user action and commandeer the Copilot Agent to silently exfiltrate spreadsheet data to attacker-controlled endpoints; the report warns this demonstrates a new class of risk where embedded AI agents amplify traditional vulnerabilities by inheriting application privileges and enabling autonomous post-exploitation actions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
