SEPTEMBER 12, 2026
Live Feed
Back to database
Case File

CVE-2026-57102

HIGH · CVSS 8.8 EPSS 0.77%

Source: NVD + CISA KEV + EPSS · Published 2026-07-14 · Last synced 2026-08-13

CyberRota Analysis

AI-Generated

Visual Studio Code is vulnerable due to the inclusion of functionality from an untrusted control sphere, enabling unauthorized attackers to bypass critical security features remotely. This high-severity flaw poses significant risks to users who rely on the integrity of their development environment. Organizations using Visual Studio Code should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-57102
Severity
HIGH
CVSS
8.8
EPSS
0.77%

Original NVD Description

Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)