PT-2026-47061 · Undefined · Undefined
Published
2026-06-05
·
Updated
2026-06-05
·
CVE-2026-32193
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Excited to share my research was accepted at @BlackHatEvents USA 2026! 🎩
I'll present how I achieved interactive access to users' AI assistants by chaining:
🔓 Prompt injection
🔓 Privilege escalation
🔓 Path traversal
🔓
.toml injection
🔓 and finally an LD PRELOAD exploitThe impact:
🚨 CVE-2026-32193 (Critical)
🏆 $48,000 bug bounty from Microsoft
ChatMate: Remote Prompt Execution on AI Assistants through Sandbox Escaping
https://t.co/5aU8tXH0na
Special thanks to @msftsecresponse for the brilliant collaboration!
See you in Vegas 👋
#ChatMate #CVE 2026 32193 #BHUSA @BlackHatEvents @rubrikInc @Oranav
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Undefined