Aug 2026: CoPilot Chat Security Feature Bypass Vulnerability
CVE-2026-65675 Published on August 11, 2026
CoPilot Chat Security Feature Bypass Vulnerability
No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security feature over a network.
Weakness Types
What is an AuthZ Vulnerability?
The software does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVE-2026-65675 has been classified to as an AuthZ vulnerability or weakness.
What is an Authorization Vulnerability?
The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
CVE-2026-65675 has been classified to as an Authorization vulnerability or weakness.
Products Associated with CVE-2026-65675
Want to know whenever a new CVE is published for Microsoft Visual Studio Code Copilot Chat Extension? stack.watch will email you.
Affected Versions
Microsoft Visual Studio Code CoPilot Chat Extension:- Version 0.27.0 and below 2026.3.1 is affected.