Skip to main content

Vendor/product archive

microsoft / github_copilot_chat CVEs

Beta · best-effort

4 CVEs tagged to microsoft / github_copilot_chat0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2026-50519

Published Jun 19, 2026

Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2026-23653

Published Apr 14, 2026

Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an authorized attacker to disclose information…

CVSS 5.7 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2025-62449

Published Nov 11, 2025

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feat…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-62222

Published Nov 11, 2025

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code ov…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1