Loading market data...
← Back to CVE feed

CVE-2026-70335

HIGH CVSS 7.8 View on NVD ↗

Description

Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Published: Aug 11, 2026 17:19 UTC Modified: Aug 11, 2026 19:18 UTC