Get the latest tech news
GitHub Copilot: Remote Code Execution via Prompt Injection (CVE-2025-53773)
An attacker can put GitHub Copilot into YOLO mode by modifying the project's settings.json file on the fly, and then executing commands, all without user approval
None
Or read this on Hacker News