0
I Use This!
Very High Activity
Analyzed 1 day ago. based on code collected 1 day ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2026-81383 High Sep 08, 2026 Use of incorrectly-resolved name or reference in Visual Studio Code allows an unauthorized attacker to disclose information over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81381 High Sep 08, 2026 Insufficiently protected credentials in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81380 Medium Sep 08, 2026 Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized att more...
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81379 High Sep 08, 2026 Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81378 High Sep 08, 2026 Interpretation conflict in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81377 Medium Sep 08, 2026 Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tamperi more...
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81376 Critical Sep 08, 2026 Incomplete comparison with missing factors in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81357 High Sep 08, 2026 Server-side request forgery (ssrf) in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-81356 High Sep 08, 2026 Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a secu more...
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0
CVE-2026-78462 High Sep 08, 2026 Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
0.44.2, 1.106.2, 1.106.1, 1.106.0, 1.105.1, 1.105.0, 1.104.3, 1.104.2, 1.104.1, 1.104.0