AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-70336

HIGH · CVSS 8.8 EPSS 0.59%

Source: NVD + CISA KEV + EPSS · Published 2026-08-11 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Visual Studio Code is vulnerable due to improper control of code generation, enabling unauthorized attackers to execute arbitrary code remotely. This high-severity flaw poses significant risks, particularly for organizations using Visual Studio Code in development environments, as it could lead to unauthorized access and potential data breaches. Development teams and security professionals should prioritize patching or mitigating this vulnerability to safeguard their systems.

CVE
CVE-2026-70336
Severity
HIGH
CVSS
8.8
EPSS
0.59%

Original NVD Description

Improper control of generation of code ('code injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)