Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Marver

Researcher fromPersistent Security Industries GmbH
#33996of 53,624
7.8Total CVSS
Vulnerabilities · 1
PT-2025-32853
7.8
2025-08-12
Unknown · Github Copilot · CVE-2025-53773
**Name of the Vulnerable Software and Affected Versions** GitHub Copilot (affected versions not specified) Visual Studio 2022 versions prior to 17.14.12 **Description** Improper neutralization of special elements used in a command, known as command injection, in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code locally. This issue is linked to insufficient validation of arguments passed to a command and can be triggered via prompt injection, which is a technique used to manipulate Large Language Models (LLMs) by providing specially crafted inputs to override original instructions. **Recommendations** Update Visual Studio 2022 to version 17.14.12. At the moment, there is no information about a newer version that contains a fix for this vulnerability regarding GitHub Copilot.