Microsoft Visual Studio Code
cpe:2.3:a:microsoft:visual_studio_code:*:*:*:*:*:*:*, +6 more
A relative path traversal vulnerability has been identified in Visual Studio Code. This issue allows an unauthorized attacker to disclose local information by exploiting the vulnerability to gain unauthorized access to the file system, specifically file path information. The vulnerability arises from improper validation of file paths, which could be manipulated to traverse directories and access restricted files.
Exploitation of this vulnerability could lead to unauthorized information disclosure, allowing attackers to access sensitive file system data.
Users are advised to update to the latest version of the Visual Studio Code Live Preview extension, available on the Visual Studio Marketplace.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.