<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Microsoft Visual Studio (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/visual-studio.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/visual-studio-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Microsoft Visual Studio (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:42 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-48027 – Nx Console is the user interface for Nx &amp; Lerna. On 19 May 2026, a malicious ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48027</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48027</guid>
    <pubDate>Wed, 27 May 2026 17:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-48027</strong></p>
  <p>Nx Console is the user interface for Nx & Lerna. On 19 May 2026, a malicious version of Nx Console, 18.95.0, was published at 12:30 PM UTC and removed soon after at 12:48 PM UTC, leaving it available for ~18 minutes in Visual Studio Marketplace. For OpenVSX, the problem was detected later, and the compromised version was available from 12:33 UTC to 13:09 UTC (~36 minutes). Version 18.100.0 of Nx…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-506</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48027">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41613 – Session fixation in Visual Studio Code allows an unauthorized attacker to elevat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41613</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41613</guid>
    <pubDate>Tue, 12 May 2026 18:17:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41613</strong></p>
  <p>Session fixation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41613">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41611 – Improper neutralization of script-related html tags in a web page (basic xss) in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41611</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41611</guid>
    <pubDate>Tue, 12 May 2026 18:17:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41611</strong></p>
  <p>Improper neutralization of script-related html tags in a web page (basic xss) in Visual Studio Code allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41611">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41109 – Improper neutralization of special elements in output used by a downstream compo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41109</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41109</guid>
    <pubDate>Tue, 12 May 2026 18:17:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41109</strong></p>
  <p>Improper neutralization of special elements in output used by a downstream component ('injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to bypass a security feature over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41109">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33116 – Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33116</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33116</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33116</strong></p>
  <p>Loop with unreachable exit condition ('infinite loop') in .NET, .NET Framework, Visual Studio allows an unauthorized attacker to deny service over a network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33116">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-32203 – Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized att...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32203</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32203</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-32203</strong></p>
  <p>Stack-based buffer overflow in .NET and Visual Studio allows an unauthorized attacker to deny service over a network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32203">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65716 – An issue in Visual Studio Code Extensions Markdown Preview Enhanced v0.8.18 allo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65716</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65716</guid>
    <pubDate>Mon, 16 Feb 2026 16:19:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65716</strong></p>
  <p>An issue in Visual Studio Code Extensions Markdown Preview Enhanced v0.8.18 allows attackers to execute arbitrary code via uploading a crafted .Md file.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65716">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-65715 – An issue in the code-runner.executorMap setting of Visual Studio Code Extensions...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-65715</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-65715</guid>
    <pubDate>Mon, 16 Feb 2026 16:19:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-65715</strong></p>
  <p>An issue in the code-runner.executorMap setting of Visual Studio Code Extensions Code Runner v0.12.2 allows attackers to execute arbitrary code when opening a crafted workspace.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-65715">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-21523 – Time-of-check time-of-use (toctou) race condition in GitHub Copilot and Visual S...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21523</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21523</guid>
    <pubDate>Tue, 10 Feb 2026 18:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-21523</strong></p>
  <p>Time-of-check time-of-use (toctou) race condition in GitHub Copilot and Visual Studio allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-367</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21523">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-21518 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21518</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21518</guid>
    <pubDate>Tue, 10 Feb 2026 18:16:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-21518</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21518">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-21257 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21257</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21257</guid>
    <pubDate>Tue, 10 Feb 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-21257</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21257">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-21256 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21256</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21256</guid>
    <pubDate>Tue, 10 Feb 2026 18:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-21256</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21256">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-33229 – NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monit...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-33229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-33229</guid>
    <pubDate>Tue, 20 Jan 2026 18:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-33229</strong></p>
  <p>NVIDIA Nsight Visual Studio for Windows contains a vulnerability in Nsight Monitor where an attacker can execute arbitrary code with the same privileges as the NVIDIA Nsight Visual Studio Edition Monitor application. A successful exploit of this vulnerability may lead to escalation of privileges, code execution, data tampering, denial of service, and information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-33229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-64660 – Improper access control in GitHub Copilot and Visual Studio Code allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64660</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64660</guid>
    <pubDate>Thu, 20 Nov 2025 23:15:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-64660</strong></p>
  <p>Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64660">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62222 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62222</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62222</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55240 – Improper access control in Visual Studio allows an authorized attacker to elevat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55240</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55240</guid>
    <pubDate>Tue, 14 Oct 2025 17:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55240</strong></p>
  <p>Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55240">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-61590 – Cursor is a code editor built for programming with AI. Versions 1.6 and below ar...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61590</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61590</guid>
    <pubDate>Fri, 03 Oct 2025 17:15:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-61590</strong></p>
  <p>Cursor is a code editor built for programming with AI. Versions 1.6 and below are vulnerable to Remote Code Execution (RCE) attacks through Visual Studio Code Workspaces. Workspaces allow users to open more than a single folder and save specific settings (pretty similar to .vscode/settings.json) for the folders / project. An untitled workspace is automatically created by VS Code (untitled.code-wo…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61590">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-55319 – Ai command injection in Agentic AI and Visual Studio Code allows an unauthorized...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-55319</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-55319</guid>
    <pubDate>Fri, 12 Sep 2025 02:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-55319</strong></p>
  <p>Ai command injection in Agentic AI and Visual Studio Code allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-55319">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53773 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53773</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53773</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53773</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in GitHub Copilot and Visual Studio allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53773">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49739 – Improper link resolution before file access ('link following') in Visual Studio ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49739</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49739</guid>
    <pubDate>Tue, 08 Jul 2025 17:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49739</strong></p>
  <p>Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49739">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49714 – Trust boundary violation in Visual Studio Code - Python extension allows an unau...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49714</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49714</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49714</strong></p>
  <p>Trust boundary violation in Visual Studio Code - Python extension allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-501</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49714">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47959 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47959</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47959</guid>
    <pubDate>Fri, 13 Jun 2025 02:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47959</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47959">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-30399 – Untrusted search path in .NET and Visual Studio allows an unauthorized attacker ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30399</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30399</guid>
    <pubDate>Fri, 13 Jun 2025 02:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-30399</strong></p>
  <p>Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-426</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30399">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26646 – External control of file name or path in .NET, Visual Studio, and Build Tools fo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26646</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26646</guid>
    <pubDate>Tue, 13 May 2025 22:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26646</strong></p>
  <p>External control of file name or path in .NET, Visual Studio, and Build Tools for Visual Studio allows an authorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-73</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26646">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-32702 – Improper neutralization of special elements used in a command ('command injectio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-32702</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-32702</guid>
    <pubDate>Tue, 13 May 2025 17:16:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-32702</strong></p>
  <p>Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32702">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21264 – Files or directories accessible to external parties in Visual Studio Code allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21264</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21264</guid>
    <pubDate>Tue, 13 May 2025 17:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21264</strong></p>
  <p>Files or directories accessible to external parties in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21264">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29803 – Uncontrolled search path element in Visual Studio Tools for Applications and SQL...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29803</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29803</guid>
    <pubDate>Sat, 12 Apr 2025 02:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29803</strong></p>
  <p>Uncontrolled search path element in Visual Studio Tools for Applications and SQL Server Management Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29803">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29804 – Improper access control in Visual Studio allows an authorized attacker to elevat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29804</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29804</guid>
    <pubDate>Tue, 08 Apr 2025 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29804</strong></p>
  <p>Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29804">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29802 – Improper access control in Visual Studio allows an authorized attacker to elevat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29802</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29802</guid>
    <pubDate>Tue, 08 Apr 2025 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29802</strong></p>
  <p>Improper access control in Visual Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29802">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-26631 – Uncontrolled search path element in Visual Studio Code allows an authorized atta...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26631</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26631</guid>
    <pubDate>Tue, 11 Mar 2025 17:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-26631</strong></p>
  <p>Uncontrolled search path element in Visual Studio Code allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26631">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-25003 – Uncontrolled search path element in Visual Studio allows an authorized attacker ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25003</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25003</guid>
    <pubDate>Tue, 11 Mar 2025 17:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-25003</strong></p>
  <p>Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25003">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24998 – Uncontrolled search path element in Visual Studio allows an authorized attacker ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24998</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24998</guid>
    <pubDate>Tue, 11 Mar 2025 17:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24998</strong></p>
  <p>Uncontrolled search path element in Visual Studio allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24998">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24070 – Weak authentication in ASP.NET Core &amp;amp; Visual Studio allows an unauthorized a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24070</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24070</guid>
    <pubDate>Tue, 11 Mar 2025 17:16:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24070</strong></p>
  <p>Weak authentication in ASP.NET Core &amp; Visual Studio allows an unauthorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-1390</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24070">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24042 – Visual Studio Code JS Debug Extension Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24042</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24042</guid>
    <pubDate>Tue, 11 Feb 2025 18:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24042</strong></p>
  <p>Visual Studio Code JS Debug Extension Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24042">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24039 – Visual Studio Code Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24039</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24039</guid>
    <pubDate>Tue, 11 Feb 2025 18:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24039</strong></p>
  <p>Visual Studio Code Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24039">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21206 – Visual Studio Installer Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21206</guid>
    <pubDate>Tue, 11 Feb 2025 18:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21206</strong></p>
  <p>Visual Studio Installer Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-427</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21405 – Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21405</guid>
    <pubDate>Tue, 14 Jan 2025 18:16:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21405</strong></p>
  <p>Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21178 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21178</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21178</guid>
    <pubDate>Tue, 14 Jan 2025 18:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21178</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21178">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21176 – .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21176</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21176</guid>
    <pubDate>Tue, 14 Jan 2025 18:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21176</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-126</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21176">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21172 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21172</guid>
    <pubDate>Tue, 14 Jan 2025 18:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21172</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49050 – Visual Studio Code Python Extension Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49050</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49050</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49050</strong></p>
  <p>Visual Studio Code Python Extension Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-501</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49050">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49049 – Visual Studio Code Remote Extension Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49049</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49049</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49049</strong></p>
  <p>Visual Studio Code Remote Extension Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49049">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43499 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43499</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43499</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43499</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-409</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43499">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-43498 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43498</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43498</guid>
    <pubDate>Tue, 12 Nov 2024 18:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-43498</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-843</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43498">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43601 – Visual Studio Code for Linux Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43601</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43601</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43601</strong></p>
  <p>Visual Studio Code for Linux Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43601">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43488 – Missing authentication for critical function in Visual Studio Code extension for...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43488</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43488</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43488</strong></p>
  <p>Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43488">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43485 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43485</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43485</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43485</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-407</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43485">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43484 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43484</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43484</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43484</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-407</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43484">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43483 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43483</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43483</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43483</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-407</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43483">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38229 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38229</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38229</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38229</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38229">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-9145 – Wiz Code Visual Studio Code extension in versions 1.0.0 up to 1.5.3 and Wiz (leg...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-9145</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-9145</guid>
    <pubDate>Tue, 01 Oct 2024 08:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-9145</strong></p>
  <p>Wiz Code Visual Studio Code extension in versions 1.0.0 up to 1.5.3 and Wiz (legacy) Visual Studio Code extension in versions 0.13.0 up to 0.17.8 are vulnerable to local command injection if the user opens a maliciously crafted Dockerfile located in a path that has been marked as a "trusted folder" within Visual Studio Code, and initiates a manual scan of the file.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-9145">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38168 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38168</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38168</guid>
    <pubDate>Tue, 13 Aug 2024 18:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38168</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38168">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38095 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38095</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38095</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38095</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38095">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38081 – .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38081</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38081</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38081</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38081">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-35264 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-35264</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-35264</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-35264</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-35264">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-30105 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30105</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-30105</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-45147 – A vulnerability has been identified in SIMATIC PCS neo V4.0 (All versions), SIMA...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-45147</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-45147</guid>
    <pubDate>Tue, 09 Jul 2024 12:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-45147</strong></p>
  <p>A vulnerability has been identified in SIMATIC PCS neo V4.0 (All versions), SIMATIC STEP 7 V16 (All versions), SIMATIC STEP 7 V17 (All versions), SIMATIC STEP 7 V18 (All versions < V18 Update 2). Affected applications do not properly restrict the .NET BinaryFormatter when deserializing user-controllable input. This could allow an attacker to cause a type confusion and execute arbitrary code withi…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-45147">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-1569 – parisneo/lollms-webui is vulnerable to a denial of service (DoS) attack due to u...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-1569</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-1569</guid>
    <pubDate>Tue, 16 Apr 2024 00:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-1569</strong></p>
  <p>parisneo/lollms-webui is vulnerable to a denial of service (DoS) attack due to uncontrolled resource consumption. Attackers can exploit the `/open_code_in_vs_code` and similar endpoints without authentication by sending repeated HTTP POST requests, leading to the opening of Visual Studio Code or the default folder opener (e.g., File Explorer, xdg-open) multiple times. This can render the host mac…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1569">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-21409 – .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-21409</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-21409</guid>
    <pubDate>Tue, 09 Apr 2024 17:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-21409</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21409">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-26165 – Visual Studio Code Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-26165</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-26165</guid>
    <pubDate>Tue, 12 Mar 2024 17:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-26165</strong></p>
  <p>Visual Studio Code Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-26165">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-21392 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-21392</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-21392</guid>
    <pubDate>Tue, 12 Mar 2024 17:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-21392</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21392">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-20656 – Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-20656</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-20656</guid>
    <pubDate>Tue, 09 Jan 2024 18:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-20656</strong></p>
  <p>Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-20656">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-0057 – NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-0057</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-0057</guid>
    <pubDate>Tue, 09 Jan 2024 18:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-0057</strong></p>
  <p>NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-0057">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-17163 – Visual Studio Code Python Extension Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-17163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-17163</guid>
    <pubDate>Fri, 29 Dec 2023 17:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-17163</strong></p>
  <p>Visual Studio Code Python Extension Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-17163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-46944 – An issue in GitKraken GitLens before v.14.0.0 allows an attacker to execute arbi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-46944</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-46944</guid>
    <pubDate>Tue, 28 Nov 2023 22:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-46944</strong></p>
  <p>An issue in GitKraken GitLens before v.14.0.0 allows an attacker to execute arbitrary code via a crafted file to the Visual Studio Codes workspace trust component.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-46944">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36049 – .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36049</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36049</guid>
    <pubDate>Tue, 14 Nov 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36049</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36049">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36018 – Visual Studio Code Jupyter Extension Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36018</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36018</guid>
    <pubDate>Tue, 14 Nov 2023 18:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36018</strong></p>
  <p>Visual Studio Code Jupyter Extension Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-359</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36018">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36796 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36796</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36796</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36796</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36796">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36794 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36794</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36794</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36794</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36794">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36793 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36793</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36793</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36793</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36793">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36792 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36792</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36792</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36792</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36792">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36758 – Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36758</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36758</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36758</strong></p>
  <p>Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-59</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36758">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36742 – Visual Studio Code Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36742</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36742</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36742</strong></p>
  <p>Visual Studio Code Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36742">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-38180 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38180</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38180</guid>
    <pubDate>Tue, 08 Aug 2023 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-38180</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38180">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-38178 – .NET Core and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38178</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38178</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-38178</strong></p>
  <p>.NET Core and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38178">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36897 – Visual Studio Tools for Office Runtime Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36897</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36897</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36897</strong></p>
  <p>Visual Studio Tools for Office Runtime Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36897">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35390 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35390</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35390</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35390</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35390">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36867 – Visual Studio Code GitHub Pull Requests and Issues Extension Remote Code Executi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36867</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36867</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36867</strong></p>
  <p>Visual Studio Code GitHub Pull Requests and Issues Extension Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36867">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33170 – ASP.NET and Visual Studio Security Feature Bypass Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33170</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33170</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33170</strong></p>
  <p>ASP.NET and Visual Studio Security Feature Bypass Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-362</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33170">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33127 – .NET and Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33127</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33127</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33127</strong></p>
  <p>.NET and Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-1220</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33127">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-32030 – .NET and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-32030</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-32030</guid>
    <pubDate>Wed, 14 Jun 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-32030</strong></p>
  <p>.NET and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-32030">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-29331 – .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-29331</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-29331</guid>
    <pubDate>Wed, 14 Jun 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-29331</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-29331">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24936 – .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24936</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24936</guid>
    <pubDate>Wed, 14 Jun 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24936</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24936">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24897 – .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24897</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24897</guid>
    <pubDate>Wed, 14 Jun 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24897</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24897">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24895 – .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24895</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24895</guid>
    <pubDate>Wed, 14 Jun 2023 15:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24895</strong></p>
  <p>.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24895">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33135 – .NET and Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33135</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33135</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33135</strong></p>
  <p>.NET and Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33135">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33128 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33128</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33128</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33128</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33128">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33126 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33126</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33126</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33126</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33126">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-28296 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28296</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28296</guid>
    <pubDate>Tue, 11 Apr 2023 21:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-28296</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28296">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-28262 – Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28262</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28262</guid>
    <pubDate>Tue, 11 Apr 2023 21:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-28262</strong></p>
  <p>Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28262">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24893 – Visual Studio Code Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24893</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24893</guid>
    <pubDate>Tue, 11 Apr 2023 21:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24893</strong></p>
  <p>Visual Studio Code Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24893">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-28681 – Jenkins Visual Studio Code Metrics Plugin 1.7 and earlier does not configure its...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28681</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28681</guid>
    <pubDate>Sun, 02 Apr 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-28681</strong></p>
  <p>Jenkins Visual Studio Code Metrics Plugin 1.7 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28681">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-23381 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-23381</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-23381</guid>
    <pubDate>Tue, 14 Feb 2023 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-23381</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-23381">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-21815 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-21815</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-21815</guid>
    <pubDate>Tue, 14 Feb 2023 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-21815</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-191</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21815">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-21808 – .NET and Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-21808</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-21808</guid>
    <pubDate>Tue, 14 Feb 2023 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-21808</strong></p>
  <p>.NET and Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21808">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-21566 – Visual Studio Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-21566</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-21566</guid>
    <pubDate>Tue, 14 Feb 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-21566</strong></p>
  <p>Visual Studio Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-73</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21566">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-21779 – Visual Studio Code Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-21779</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-21779</guid>
    <pubDate>Tue, 10 Jan 2023 22:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-21779</strong></p>
  <p>Visual Studio Code Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21779">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-41119 – Visual Studio Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41119</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41119</guid>
    <pubDate>Wed, 09 Nov 2022 22:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-41119</strong></p>
  <p>Visual Studio Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41119">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-41083 – Visual Studio Code Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41083</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41083</guid>
    <pubDate>Tue, 11 Oct 2022 19:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-41083</strong></p>
  <p>Visual Studio Code Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41083">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-41042 – Visual Studio Code Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41042</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41042</guid>
    <pubDate>Tue, 11 Oct 2022 19:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-41042</strong></p>
  <p>Visual Studio Code Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41042">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
