CVE-2026-70335: GitHub Copilot and Visual Studio Code Elevation of Privilege Vulnerability
Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
CSIRTS triage
- What
- OS command injection in GitHub Copilot allows an unauthorized attacker to elevate privileges locally.
- Who is affected
- Copilot deployments with unpatched versions are affected.
- Urgency
- High priority; privilege escalation vulnerability with high CVSS score requires prompt patching.
- Action
- Update GitHub Copilot to the latest patched version immediately.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Copilot
Get an email when a new Copilot advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-70335
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-703350.47% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 38% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-70335 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- high[NEW] [high] Microsoft Developer Tools: Multiple Vulnerabilitiescert-bund
- unknownMultiple vulnerabilities in Microsoft products (August 12, 2026)cert-fr-avis
- unknownNCSC-2026-0285 [1.00] [M/H] Vulnerabilities patched in Microsoft Developer Toolsncsc-nl
- highCVE-2026-70335: Improper neutralization of special elements used in an os command ('os command injection') in …nvd
Recent advisories for GitHub Copilot and
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- highCVE-2026-70335: Improper neutralization of special elements used in an os command ('os command injection') in …nvd · 2026-08-11
- highCVE-2026-50510: Improper restriction of names for files and other resources in Github Copilot allows an unauth…nvd · 2026-07-14
- mediumCVE-2026-47282: Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauth…nvd · 2026-07-14
- highCVE-2026-41109: GitHub Copilot and Visual Studio Code Security Feature Bypass Vulnerabilitymsrc · 2026-07-14
- mediumCVE-2026-47282: GitHub Copilot and Visual Studio Code Information Disclosure Vulnerabilitymsrc · 2026-07-14
- highCVE-2026-50510: GitHub Copilot Remote Code Execution Vulnerabilitymsrc · 2026-07-14
More from Microsoft Security Response Center
- highCVE-2026-70354: .NET Core Remote Code Execution Vulnerability2026-08-11
- highCVE-2026-68792: Microsoft Office Elevation of Privilege Vulnerability2026-08-11
- highCVE-2026-64909: Microsoft Office Remote Code Execution Vulnerability2026-08-11
- highCVE-2026-70130: Microsoft Office Remote Code Execution Vulnerability2026-08-11
- highCVE-2026-66807: Microsoft Office Graphics Component Remote Code Execution Vulnerability2026-08-11