Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Github Copilot Chat
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-62449 1 Microsoft 1 Github Copilot Chat 2026-06-17 N/A 6.8 MEDIUM
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.
CVE-2025-62222 1 Microsoft 1 Github Copilot Chat 2026-06-17 N/A 8.8 HIGH
Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code over a network.
CVE-2026-23653 1 Microsoft 1 Github Copilot Chat 2026-05-06 N/A 5.7 MEDIUM
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an authorized attacker to disclose information over a network.