Jul 2026: GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability
CVE-2026-47282 Published on July 14, 2026

GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability
Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.

Vendor Advisory NVD

Weakness Types

Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

What is an Information Disclosure Vulnerability?

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

CVE-2026-47282 has been classified to as an Information Disclosure vulnerability or weakness.


Products Associated with CVE-2026-47282

Want to know whenever a new CVE is published for Microsoft Visual Studio Code? stack.watch will email you.

 

Affected Versions

Microsoft Visual Studio Code: