GitHub Copilot / VS Code (Sep 2025) โ Command injection in agentic AI workflows allowed remote unauthenticated attackers to execute injected commands directly on the developer's local machine.
Source: Microsoft Security Advisory, Sep 2025Prompt Injection ยท Improper Output Handling