ZeroHour

CVE-2026-47292

CVSS 3.1
7.8 high
EPSS
<1%p37
Published
()
Modified
Description

Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to elevate privileges locally.

Vendors
microsoft
Products
visual studio code
Weakness
CWE-94, CWE-829
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.