Coding assistants
Model-based tools that write, review or run code inside editors, terminals and pipelines.
- All items
- 160
- Last 90 days
- 44
- Change
- -8%vs 48 before
Items per month
| Month | Items |
|---|---|
| May 2025 | 0 |
| Jun 2025 | 1 |
| Jul 2025 | 0 |
| Aug 2025 | 4 |
| Sep 2025 | 2 |
| Oct 2025 | 3 |
| Nov 2025 | 4 |
| Dec 2025 | 4 |
| Jan 2026 | 3 |
| Feb 2026 | 17 |
| Mar 2026 | 16 |
| Apr 2026 | 12 |
| May 2026 | 16 |
| Jun 2026 | 18 |
| Jul 2026 | 19 |
| Aug 2026 | 13 |
| Sep 2026 | 14 |
| Oct 2026 | 3 |
79 items
CVE-2025-64671: Copilot command injection allows local code execution by unauthorized attacker
Dec 9, 2025HighVulnerabilitySecurityCVE-2025-64671CVE-2025-64671 is a command injection flaw (CWE-77) in Copilot, reported by Microsoft Corporation. It allows an unauthorized attacker to execute code locally. NIST has not yet provided an NVD assessment, and the entry was published 12/09/2025 and last modified 12/12/2025.
NVD/CVE DatabaseCVE-2025-62994: WP AI CoPilot plugin sensitive data exposure through sent data
Dec 9, 2025MediumVulnerabilitySecurityCVE-2025-62994CVE-2025-62994 is an Insertion of Sensitive Information Into Sent Data vulnerability (CWE-201) in WP Messiah's WP AI CoPilot plugin (ai-co-pilot-for-wp). It affects versions from n/a through 1.2.7 and allows retrieval of embedded sensitive data. NVD had not yet provided an assessment, and the CVE was published 12/09/2025 by Patchstack.
NVD/CVE DatabaseCVE-2025-64660: GitHub Copilot and Visual Studio Code improper access control
Nov 20, 2025HighVulnerabilitySecurityCVE-2025-64660CVE-2025-64660 describes improper access control in GitHub Copilot and Visual Studio Code. According to the source, an authorized attacker can execute code over a network. The weakness is classified as CWE-284 (Improper Access Control), and NVD has not yet provided an assessment.
NVD/CVE DatabaseCVE-2025-62453: GitHub Copilot and Visual Studio Code security feature bypass via AI output
Nov 11, 2025MediumVulnerabilitySecurityCVE-2025-62453CVE-2025-62453 is an improper validation of generative AI output flaw in GitHub Copilot and Visual Studio Code, classified as CWE-693 (Protection Mechanism Failure). An authorized attacker can bypass a security feature locally. NVD has not yet provided an assessment; the entry was published 11/11/2025 and last modified 11/14/2025, with Microsoft Corporation as the source.
NVD/CVE DatabaseCVE-2025-62449: Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat…
Nov 11, 2025MediumVulnerabilitySecurityCVE-2025-62449CVE-2025-62449 is a path traversal flaw (CWE-22) in the Visual Studio Code CoPilot Chat Extension. It allows an authorized attacker to bypass a security feature locally. NVD had not yet provided an assessment at the time of the source text.
NVD/CVE DatabaseCVE-2025-62222: Visual Studio Code CoPilot Chat Extension command injection over network
Nov 11, 2025HighVulnerabilitySecurityCVE-2025-62222CVE-2025-62222 is an improper neutralization of special elements used in a command (CWE-77, command injection) flaw in the Visual Studio Code CoPilot Chat Extension. The source states that it allows an unauthorized attacker to execute code over a network. NIST has not yet provided an NVD assessment, and Microsoft Corporation is the listed source.
NVD/CVE DatabaseCVE-2025-59286: Copilot command injection allows unauthorized information disclosure
Oct 9, 2025CriticalVulnerabilitySecurityCVE-2025-59286CVE-2025-59286 is a command injection flaw (CWE-77) in Copilot, where improper neutralization of special elements in a command lets an unauthorized attacker disclose information over a network. The NVD has not yet provided an assessment, and the vendor advisory is from Microsoft Corporation. NVD published the entry on 10/09/2025 and last modified it on 12/11/2025.
NVD/CVE DatabaseCVE-2025-59272: Copilot command injection allows local information disclosure
Oct 9, 2025CriticalVulnerabilitySecurityCVE-2025-59272CVE-2025-59272 is a command injection flaw (CWE-77) in Copilot, where improper neutralization of special elements in a command lets an unauthorized attacker perform information disclosure locally. NVD has not yet provided an assessment, and the vendor advisory is from Microsoft Corporation. The record was published on 10/09/2025 and last modified on 12/11/2025.
NVD/CVE DatabaseCVE-2025-59252: Copilot command injection allows unauthorized information disclosure
Oct 9, 2025CriticalVulnerabilitySecurityCVE-2025-59252CVE-2025-59252 is a command injection flaw (CWE-77) in Copilot, which the source says is an Exclusively Hosted Service. An unauthorized attacker can exploit it over a network to disclose information. NVD had not yet provided an assessment, and the record was published 10/09/2025 and last modified 12/11/2025.
NVD/CVE DatabaseCVE-2025-58401: Obsidian GitHub Copilot Plugin stores GitHub API token in cleartext
Sep 5, 2025MediumVulnerabilitySecurityCVE-2025-58401CVE-2025-58401 affects the Obsidian GitHub Copilot Plugin in versions prior to 1.1.7. The plugin stores the GitHub API token in cleartext form (CWE-312), so an attacker may perform unauthorized operations on the linked GitHub account. JPCERT/CC assigned a CVSS 4.0 score of 5.1 (MEDIUM), and NVD had not yet provided an assessment.
Fix: Fixed in 1.1.7 (https://github.com/Pierrad/obsidian-github-copilot/releases/tag/1.1.7).
NVD/CVE DatabaseCVE-2025-53773: GitHub Copilot and Visual Studio command injection allowing local code execution
Aug 12, 2025HighVulnerabilitySecurityCVE-2025-53773CVE-2025-53773 is a command injection weakness (CWE-77) in GitHub Copilot and Visual Studio. The source states that it allows an unauthorized attacker to execute code locally. NVD has not yet provided its own assessment, and the entry was published on 08/12/2025 and last modified on 08/15/2025.
NVD/CVE DatabaseCVE-2025-53787: Microsoft 365 Copilot BizChat information disclosure vulnerability
Aug 7, 2025HighVulnerabilitySecurityCVE-2025-53787NIST's NVD entry for CVE-2025-53787 describes a Microsoft 365 Copilot BizChat information disclosure vulnerability, classified under CWE-77 (Improper Neutralization of Special Elements used in a Command, 'Command Injection'). The NVD published the entry on 08/07/2025 and last modified it on 08/14/2025, and NVD has not yet provided its own assessment. The source provides no attack details or affected version list.
NVD/CVE DatabaseCVE-2025-53774: Microsoft 365 Copilot BizChat information disclosure
Aug 7, 2025MediumVulnerabilitySecurityCVE-2025-53774CVE-2025-53774 is an information disclosure vulnerability in Microsoft 365 Copilot BizChat, an exclusively hosted service. It is classified as CWE-77, Improper Neutralization of Special Elements used in a Command ('Command Injection'). NVD published it on 08/07/2025 and last modified it on 08/14/2025, and NIST has not yet provided an NVD assessment.
NVD/CVE DatabaseCVE-2025-32711: M365 Copilot AI command injection allows information disclosure over network
Jun 11, 2025CriticalVulnerabilitySecurityCVE-2025-32711CVE-2025-32711 describes an AI command injection flaw in M365 Copilot that lets an unauthorized attacker disclose information over a network. The weakness is classified as CWE-77, Improper Neutralization of Special Elements used in a Command ('Command Injection'), and Microsoft is the listed source. NVD published the entry on 06/11/2025 and last modified it on 08/04/2025, and no NVD assessment was yet provided.
NVD/CVE DatabaseCVE-2024-49038: Copilot Studio cross-site scripting allows privilege elevation over network
Nov 26, 2024CriticalVulnerabilitySecurityCVE-2024-49038CVE-2024-49038 is an improper neutralization of input during web page generation ('Cross-site Scripting', CWE-79) in Copilot Studio. According to the source, an unauthorized attacker over a network can exploit it to elevate privilege. NVD has not yet provided an assessment.
NVD/CVE DatabaseCVE-2024-48140: Monica Your AI Copilot prompt injection in chatbox exposes chat data
Oct 24, 2024HighVulnerabilitySecurityCVE-2024-48140CVE-2024-48140 describes a prompt injection vulnerability in the chatbox of Butterfly Effect Limited's Monica Your AI Copilot powered by ChatGPT4, version 6.3.0. A crafted message lets an attacker access and exfiltrate all previous and subsequent chat data between the user and the AI assistant. The source lists CWE-77 (Command Injection) as the weakness, and NVD has not yet provided an assessment.
NVD/CVE DatabaseCVE-2024-43610: Copilot Studio exposure of sensitive information to unauthorized actor
Oct 9, 2024HighVulnerabilitySecurityCVE-2024-43610CVE-2024-43610 is an information exposure flaw (CWE-200) in Copilot Studio. An unauthenticated attacker can view sensitive information over the network. NIST has not yet provided an NVD assessment, and Microsoft is the listed source.
NVD/CVE DatabaseCVE-2024-9333: M-Files Connector for Copilot permissions bypass exposing limited documents
Oct 2, 2024MediumVulnerabilitySecurityCVE-2024-9333CVE-2024-9333 is a permissions bypass in the M-Files Connector for Copilot before version 24.9.3. Incorrect access control list calculation lets an authenticated user access a limited number of documents. The CNA, M-Files Corporation, scores it CVSS 4.0 5.3 (MEDIUM), and NVD has not yet provided an assessment.
NVD/CVE DatabaseCVE-2024-38206: Microsoft Copilot Studio SSRF protection bypass leaking sensitive information
Aug 6, 2024HighVulnerabilitySecurityCVE-2024-38206EPSS: 12.3%CVE-2024-38206 is a vulnerability in Microsoft Copilot Studio, classified under CWE-918 (Server-Side Request Forgery). An authenticated attacker can bypass the product's SSRF protection and leak sensitive information over a network. NVD published the entry on 08/06/2024 and last modified it on 08/13/2024, with no NVD assessment yet provided.
Fix: Microsoft's MSRC update guide entry for CVE-2024-38206 is listed as a Patch source, but the source text does not state the fix, fixed version or workaround. N/A -- no mitigation discussed in source.
NVD/CVE Database
Topic added 2026-10-09. An item belongs to this topic when its title matches one of the topic's patterns or its summary mentions the topic at least twice. Report a wrong match with the feedback button on the item.