Vulnerabilities > Microsoft > Visual Studio Code > 0.5.1

DATE CVE VULNERABILITY TITLE RISK
2020-09-11 CVE-2020-16881 Unspecified vulnerability in Microsoft Visual Studio Code
<p>A remote code execution vulnerability exists in Visual Studio Code when a user is tricked into opening a malicious 'package.json' file.
local
low complexity
microsoft
7.8
2020-08-17 CVE-2020-0604 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project.
local
low complexity
microsoft
7.8
2020-07-14 CVE-2020-1416 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Visual Studio and Visual Studio Code when they load software dependencies, aka 'Visual Studio and Visual Studio Code Elevation of Privilege Vulnerability'.
network
low complexity
microsoft CWE-269
8.8
2020-05-21 CVE-2020-1192 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads workspace settings from a notebook file, aka 'Visual Studio Code Python Extension Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3
2020-05-21 CVE-2020-1171 Unspecified vulnerability in Microsoft Visual Studio Code
A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads configuration files after opening a project, aka 'Visual Studio Code Python Extension Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3
2020-01-24 CVE-2019-1414 Unspecified vulnerability in Microsoft Visual Studio Code
An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'Visual Studio Code Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.2