CVE-2026-65675
- EPSS 0.48%
- Veröffentlicht 11.08.2026 17:04:59
- Zuletzt bearbeitet 19.08.2026 18:17:13
No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-50519
- EPSS 0.51%
- Veröffentlicht 19.06.2026 20:28:35
- Zuletzt bearbeitet 17.08.2026 15:13:41
Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.
CVE-2026-23653
- EPSS 0.74%
- Veröffentlicht 14.04.2026 16:56:53
- Zuletzt bearbeitet 06.05.2026 18:01:51
Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an authorized attacker to disclose information over a network.
CVE-2025-62449
- EPSS 0.47%
- Veröffentlicht 11.11.2025 18:15:50
- Zuletzt bearbeitet 13.11.2025 19:45:11
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.
CVE-2025-62222
- EPSS 0.74%
- Veröffentlicht 11.11.2025 18:15:49
- Zuletzt bearbeitet 14.11.2025 15:47:58
Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code over a network.