Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Github Copilot Chat
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-62222 1 Microsoft 1 Github Copilot Chat 2025-11-14 N/A 8.8 HIGH
Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code over a network.
CVE-2025-62449 1 Microsoft 1 Github Copilot Chat 2025-11-13 N/A 6.8 MEDIUM
Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.