Microsoft
Microsoft Github Copilot: vulnerabilidades y CVE
Microsoft Github Copilot tiene 4 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses4
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-50510 | Alta (7.8) | 0.36% | — | 14 jul 2026 | Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally. |
| CVE-2025-66389 | Alta (7.5) | 1.2% | — | 22 jun 2026 | GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fetch_webpage. Therefore, exfiltration could occur if there is indirect prompt… |
| CVE-2026-21516 | Alta (7.8) | 0.84% | — | 10 feb 2026 | Improper neutralization of special elements used in a command ('command injection') in Github Copilot allows an unauthorized attacker to execute code over a network. |
| CVE-2025-64671 | Alta (7.8) | 0.36% | — | 9 dic 2025 | Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to execute code locally. |