Vulnerabilities > Microsoft > Visual Studio 2019 > 16.7

DATE CVE VULNERABILITY TITLE RISK
2020-10-07 CVE-2020-26870 Cross-site Scripting vulnerability in multiple products
Cure53 DOMPurify before 2.0.17 allows mutation XSS.
4.3
2020-09-15 CVE-2020-8927 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB.
6.5
2020-09-11 CVE-2020-1133 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles file operations.
local
low complexity
microsoft
5.5
2020-09-11 CVE-2020-1130 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations.
local
low complexity
microsoft
6.6