CVE-2025-66389 PUBLISHED

Assigner: mitre
Reserved: 28.11.2025 Published: 22.06.2026 Updated: 22.06.2026

GitHub Copilot 1.372.0 allows filesystem access outside of a workspace folder (without user approval) via a file-handler URI parameter to fetch_webpage. Therefore, exfiltration could occur if there is indirect prompt injection.

Product Status

Vendor n/a
Product n/a
Versions
  • Version n/a is affected

References

Problem Types

  • n/a text