Microsoft's agentic HTML can leak passwords and AI keys, researcher finds