CyberRota Analysis
AI-GeneratedVisual Studio Code is vulnerable due to the inclusion of functionality from an untrusted control sphere, enabling unauthorized attackers to bypass critical security features remotely. This high-severity flaw poses significant risks to users who rely on the integrity of their development environment. Organizations using Visual Studio Code should prioritize immediate remediation to mitigate potential exploitation.
CVE
CVE-2026-57102
Severity
HIGH
CVSS
8.8
EPSS
0.77%
Original NVD Description
Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
Related CVEs
Other vulnerabilities affecting the same vendor(s)