CVE-2026-70354
- EPSS 0.29%
- Veröffentlicht 11.08.2026 17:07:15
- Zuletzt bearbeitet 17.08.2026 12:56:51
Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.
CVE-2026-70336
- EPSS 0.59%
- Veröffentlicht 11.08.2026 17:05:32
- Zuletzt bearbeitet 14.08.2026 13:32:52
Improper control of generation of code ('code injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.
CVE-2026-70335
- EPSS 0.47%
- Veröffentlicht 11.08.2026 17:05:32
- Zuletzt bearbeitet 14.08.2026 12:37:53
Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
CVE-2026-69306
- EPSS 0.4%
- Veröffentlicht 11.08.2026 17:05:18
- Zuletzt bearbeitet 14.08.2026 12:50:36
Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
CVE-2026-69320
- EPSS 0.46%
- Veröffentlicht 11.08.2026 17:05:17
- Zuletzt bearbeitet 14.08.2026 13:21:33
Improper neutralization of special elements used in an os command ('os command injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.
CVE-2026-69278
- EPSS 0.33%
- Veröffentlicht 11.08.2026 17:05:17
- Zuletzt bearbeitet 14.08.2026 13:18:45
Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.
CVE-2026-47285
- EPSS 0.87%
- Veröffentlicht 11.08.2026 17:03:41
- Zuletzt bearbeitet 17.08.2026 11:31:49
Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to disclose information over a network.
CVE-2026-59113
- EPSS 0.69%
- Veröffentlicht 11.08.2026 17:03:40
- Zuletzt bearbeitet 17.08.2026 12:26:32
Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.
CVE-2026-58650
- EPSS 0.33%
- Veröffentlicht 11.08.2026 17:03:24
- Zuletzt bearbeitet 17.08.2026 12:48:00
Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.
CVE-2026-57102
- EPSS 0.77%
- Veröffentlicht 14.07.2026 17:09:38
- Zuletzt bearbeitet 16.07.2026 15:34:36
Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.