CVE-2019-0728
A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a
A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project, aka 'Visual Studio Code Remote Code Execution Vulnerability'.
HIGH · CVSS 7.8
EPSS 0.11205
Schedule remediation
- EPSS ≥ 0.10 - elevated exploitation probability
- EPSS percentile: top 6% of all CVEs by exploitation likelihood
- CVSS base score ≥ 7.0
Sigma rules7
YARA rules0