Microsoft Visual Studio Code
cpe:2.3:a:microsoft:visual_studio_code:*:*:*:*:*:*:*, +6 more
An elevation of privilege vulnerability has been identified in Visual Studio Code. This issue allows an authorized attacker with standard user privileges to place a malicious file on the Visual Code server. The attacker can then wait for a privileged user to execute the file, potentially leading to unauthorized actions or access.
Exploitation of this vulnerability could allow an attacker to gain elevated privileges, executing actions or commands with the rights of the user running the affected application.
Users can update to Visual Studio Code version 1.97.1 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.