Vulnerabilities > Microsoft > Visual Studio Code

DATE CVE VULNERABILITY TITLE RISK
2024-10-08 CVE-2024-43488 Unspecified vulnerability in Microsoft Visual Studio Code
Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector.
network
low complexity
microsoft
critical
9.8
2024-10-08 CVE-2024-43601 Unspecified vulnerability in Microsoft Visual Studio Code
Visual Studio Code for Linux Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2021-12-15 CVE-2021-43891 Unspecified vulnerability in Microsoft Visual Studio Code
Visual Studio Code Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2021-12-15 CVE-2021-43908 Unspecified vulnerability in Microsoft Visual Studio Code
Visual Studio Code Spoofing Vulnerability
network
low complexity
microsoft
4.3
2021-03-24 CVE-2021-28967 Unspecified vulnerability in Microsoft Visual Studio Code
The unofficial MATLAB extension before 2.0.1 for Visual Studio Code allows attackers to execute arbitrary code via a crafted workspace because of lint configuration settings.
network
low complexity
microsoft
critical
9.8
2020-07-14 CVE-2020-1416 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Visual Studio and Visual Studio Code when they load software dependencies, aka 'Visual Studio and Visual Studio Code Elevation of Privilege Vulnerability'.
network
low complexity
microsoft CWE-269
8.8
2020-05-21 CVE-2020-1192 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads workspace settings from a notebook file, aka 'Visual Studio Code Python Extension Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2020-05-21 CVE-2020-1171 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads configuration files after opening a project, aka 'Visual Studio Code Python Extension Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2020-01-24 CVE-2019-1414 Unspecified vulnerability in Microsoft Visual Studio Code
An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'Visual Studio Code Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-03-05 CVE-2019-0728 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project, aka 'Visual Studio Code Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8