Visual Studio Code Elevation of Privilege Vulnerability

Vulnerability

An elevation of privilege vulnerability has been identified in Visual Studio Code. This issue allows an authorized attacker with standard user privileges to place a malicious file on the Visual Code server. The attacker can then wait for a privileged user to execute the file, potentially leading to unauthorized actions or access.

Impact

Exploitation of this vulnerability could allow an attacker to gain elevated privileges, executing actions or commands with the rights of the user running the affected application.

Remediation

Users can update to Visual Studio Code version 1.97.1 to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
10.0
exploitability
3.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.