TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

MSRC Update Guide

CVE-2026-21516 GitHub Copilot for Jetbrains Remote Code Execution Vulnerability

2026-02-10 · Read original ↗

ATT&CK techniques detected

1 predictions
T1203Exploitation for Client Execution
47%
"cve - 2026 - 21516 github copilot for jetbrains remote code execution vulnerability you need to enable javascript to run this app."

Summary

Improper neutralization of special elements used in a command ('command injection') in Github Copilot allows an unauthorized attacker to execute code over a network.