High
nvd
·
CVE-2026-45482
CVE-2026-45482: Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code
Published Jun 9, 2026
CVSS 8.4
Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.
Affected AI Products
github copilot
copilot