|
Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
|---|---|---|---|---|---|
| CVE-2026-81383 | High | Sep 08, 2026 | Use of incorrectly-resolved name or reference in Visual Studio Code allows an unauthorized attacker to disclose information over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81381 | High | Sep 08, 2026 | Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81380 | Medium | Sep 08, 2026 | Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized att more... |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81379 | High | Sep 08, 2026 | Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81378 | High | Sep 08, 2026 | Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81377 | Medium | Sep 08, 2026 | Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tamperi more... |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81376 | Critical | Sep 08, 2026 | Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81357 | High | Sep 08, 2026 | Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-81356 | High | Sep 08, 2026 | Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a secu more... |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|
|
| CVE-2026-78462 | High | Sep 08, 2026 | Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network. |
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
|