CVE-2025-64671

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
09/12/2025
Last modified:
09/12/2025

Description

Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to execute code locally.

References to Advisories, Solutions, and Tools