Top Advisory

Microsoft Copilot Personal One-Click Data Exfiltration Vulnerability (CoSnitch)

Severity Level: High

CVE ID: CVE-2026-24301

Date: 19/08/2026

Ref: CERT-NCSOC-0229

Components Affected

Overview

A high-severity vulnerability identified in Microsoft Copilot Personal (consumer version) could allow an attacker to execute unauthorized prompts within a victim's authenticated Copilot session through a specially crafted URL. The vulnerability, tracked as CVE-2026-24301 and collectively referred to as CoSnitch, may enable the exfiltration of sensitive information from applications and services previously connected to the victim's Copilot account.

The issue was discovered by Varonis Threat Labs and reported to Microsoft in December 2025. Microsoft released security fixes on 18 August 2026. At the time of disclosure, there was no evidence of active exploitation in the wild.

Description

The vulnerability exists in Microsoft Copilot Personal due to improper handling of URL parameters that can automatically execute prompts within a user's authenticated Copilot session.

Researchers identified an undocumented parameter, autorun=1, which, when combined with the existing q parameter, allows attacker-supplied prompts to execute automatically when a victim opens a crafted URL. The prompt executes with the same privileges and access available to the authenticated user.

The attack chain consists of:

An Unauthenticated Attacker May Obtain

An unauthenticated attacker who successfully convinces a victim to open a malicious Copilot URL may obtain:

The attacker does not gain permissions beyond those already granted to the victim's account but may abuse the victim's existing access to retrieve sensitive information.

Impact

Successful exploitation could result in:

Organisations using AI assistants with connected services may face increased risks because the attack leverages legitimate user permissions rather than exploiting underlying service accounts.

Solution / Workarounds

Before installation of the software, please visit the vendor website for more details. Microsoft released security updates addressing CVE-2026-24301 on 18 August 2026.

Organisations and users should:

Reference

Disclaimer

This advisory is provided for informational and defensive security purposes only. The information contained herein is based on publicly available research, vendor advisories, and responsible vulnerability disclosures available as of 19 August 2026, and is provided on an "as is" basis, without warranty of any kind.

Footer Advisory