VYPR
High severity8.4NVD Advisory· Published Jun 9, 2026· Updated Jun 9, 2026

CVE-2026-45482

CVE-2026-45482

Description

Improper limitation of a pathname to a restricted directory ('path traversal') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

2