CVE-2026-50510
Microsoft · Published July 14, 2026
7.8
CVSS v3.1
HIGHPatch availableGet patch
Description
GitHub Copilot Remote Code Execution Vulnerability. Improper restriction of names for files and other resources in Github Copilot allows an unauthorized attacker to execute code locally.
Affected Products
- GitHub Copilot Plugin for JetBrains IDEs
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C