OS Command Injection in Visual Studio Code - CVE-2026-70335

 

OS Command Injection in Visual Studio Code - CVE-2026-70335

Published: August 12, 2026


Vulnerability identifier: #VU141862
CSH Severity: High
CVSS v4: 8.4 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-70335
CWE-ID: CWE-78
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to elevate privileges.

The vulnerability exists due to command injection in GitHub Copilot and Visual Studio Code AI agent content processing when processing attacker-controlled content. A remote attacker can embed malicious instructions in a web page, repository file, or tool response to elevate privileges.

User interaction is required to run the agent against the crafted content, and the injected instructions may cause commands to run without prompting for confirmation.


Affected software

Visual Studio Code

How to mitigate CVE-2026-70335

Install security update from vendor's website.

Visual Studio Code - update to 1.132.1

External References

Related Security Bulletins