SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-81356

HIGH · CVSS 8.2 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Visual Studio Code is vulnerable to HTTP request/response smuggling, which allows unauthorized attackers to bypass security features through manipulated HTTP requests. This could lead to unauthorized access or data leakage over the network. Organizations using Visual Studio Code should prioritize patching this vulnerability to mitigate potential security risks.

CVE
CVE-2026-81356
Severity
HIGH
CVSS
8.2
EPSS
0.32%

Original NVD Description

Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)