AI Safety & SecurityThree CVEs, One Root Cause: August 2026 Exposed the Agent Authorization Boundary
A 9.9 in Azure SRE Agent, a 9.3 in Copilot Cowork, and a prompt-injection tool-dispatch flaw in Spring AI. Different vendors, different stacks, the same mistake — telling an agent what it may do instead of enforcing it.






