AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-54981

HIGH · CVSS 7.8 EPSS 0.44%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The Python extension for Visual Studio Code is vulnerable due to the inclusion of functionality from an untrusted control sphere, enabling unauthorized attackers to bypass local security features. This flaw poses a high risk as it could allow malicious actors to execute arbitrary code or manipulate the development environment. Developers and organizations utilizing this extension should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-54981
Severity
HIGH
CVSS
7.8
EPSS
0.44%

Original NVD Description

Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a security feature locally.