Vulnerability Details CVE-2026-70335
Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
Exploit prediction scoring system (EPSS) score
CVSS Severity
CVSS v3 Score 7.8