PT-2025-46517 · Github+1 · Github Copilot+1

Published

2025-11-11

·

Updated

2025-11-14

·

CVE-2025-62453

CVSS v3.1

5.0

Medium

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions GitHub Copilot and Visual Studio Code (affected versions not specified)
Description A security feature bypass can occur due to improper validation of generative AI output in GitHub Copilot and Visual Studio Code. An authorized attacker can exploit this locally.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Protection Mechanism Failure

Weakness Enumeration

Related Identifiers

BDU:2025-14176
CVE-2025-62453

Affected Products

Github Copilot
Visual Studio Code