Feed/CVE-2025-62449
CVE-2025-62449MEDIUMCVSS 6.8

CVE-2025-62449

Published Nov 11, 2025·Updated Jun 17, 2026

NVD Description

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code CoPilot Chat Extension allows an authorized attacker to bypass a security feature locally.

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free