AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-69320

HIGH · CVSS 8.8 EPSS 0.46%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Visual Studio Code is vulnerable to an OS command injection flaw that allows unauthorized attackers to execute arbitrary code remotely. This high-severity vulnerability (CVSS 8.8) poses significant risks to users, particularly those in development environments where code execution can lead to data breaches or system compromise. Organizations using Visual Studio Code should prioritize patching this vulnerability to mitigate potential exploitation.

CVE
CVE-2026-69320
Severity
HIGH
CVSS
8.8
EPSS
0.46%

Original NVD Description

Improper neutralization of special elements used in an os command ('os command injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)