Security News Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps TheHackerNews Daniel Bender 18 Aug 2026 Share CVE-2026-24301 lets crafted Copilot Personal links auto-run prompts that can pull data from connected apps and exfiltrate it via URL fetches.