Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Visual Studio Code
Total 52 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-28469 1 Microsoft 1 Visual Studio Code 2024-11-21 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-28457 1 Microsoft 1 Visual Studio Code 2024-11-21 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-27060 1 Microsoft 1 Visual Studio Code 2024-11-21 6.8 MEDIUM 7.8 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2021-26437 1 Microsoft 1 Visual Studio Code 2024-11-21 4.3 MEDIUM 5.5 MEDIUM
Visual Studio Code Spoofing Vulnerability
CVE-2021-1639 1 Microsoft 3 Visual Studio 2017, Visual Studio 2019, Visual Studio Code 2024-11-21 6.8 MEDIUM 7.0 HIGH
Visual Studio Code Remote Code Execution Vulnerability
CVE-2020-1416 1 Microsoft 5 Azure Storage Explorer, Typescript, Visual Studio 2017 and 2 more 2024-11-21 9.3 HIGH 8.8 HIGH
An elevation of privilege vulnerability exists in Visual Studio and Visual Studio Code when they load software dependencies, aka 'Visual Studio and Visual Studio Code Elevation of Privilege Vulnerability'.
CVE-2020-17104 1 Microsoft 1 Visual Studio Code 2024-11-21 9.3 HIGH 7.8 HIGH
Visual Studio Code JSHint Extension Remote Code Execution Vulnerability
CVE-2019-1414 1 Microsoft 1 Visual Studio Code 2024-11-21 7.2 HIGH 7.8 HIGH
An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'Visual Studio Code Elevation of Privilege Vulnerability'.
CVE-2019-0728 1 Microsoft 1 Visual Studio Code 2024-11-21 9.3 HIGH 7.8 HIGH
A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project, aka 'Visual Studio Code Remote Code Execution Vulnerability'.
CVE-2018-0597 1 Microsoft 1 Visual Studio Code 2024-11-21 6.8 MEDIUM 7.8 HIGH
Untrusted search path vulnerability in the installer of Visual Studio Code allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVE-2024-43601 2 Linux, Microsoft 2 Linux Kernel, Visual Studio Code 2024-11-08 N/A 7.8 HIGH
Visual Studio Code for Linux Remote Code Execution Vulnerability
CVE-2024-43488 1 Microsoft 1 Visual Studio Code 2024-10-21 N/A 9.8 CRITICAL
Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector.