CVE-2025-59272
Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized at
Improper neutralization of special elements used in a command ('command injection') in Copilot allows an unauthorized attacker to perform information disclosure locally.
CRITICAL · CVSS 9.3
EPSS 0.00108
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0