CyberRota Analysis
AI-GeneratedVisual Studio Code is vulnerable to HTTP request/response smuggling, which allows unauthorized attackers to bypass security features through manipulated HTTP requests. This could lead to unauthorized access or data leakage over the network. Organizations using Visual Studio Code should prioritize patching this vulnerability to mitigate potential security risks.
CVE
CVE-2026-81356
Severity
HIGH
CVSS
8.2
EPSS
0.32%
Original NVD Description
Inconsistent interpretation of http requests ('http request/response smuggling') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.
Related CVEs
Other vulnerabilities affecting the same vendor(s)