CSS attacks against Outlook, Gmail, Fastmail, Yahoo Mail, AOL Mail, and other webmail services can cross the boundary between an email and the trusted inbox interface. Public proof-of-concept attacks demonstrated password capture, session-token theft, UI hijacking, and manipulation of AI tools connected to email.
Source