CVE-2025-32702
13.05.2025, 17:16
Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an unauthorized attacker to execute code locally.
Vendor | Product | Version |
---|---|---|
microsoft | visual_studio_2019 | 16.0 ≤ 𝑥 < 16.11.47 |
microsoft | visual_studio_2022 | 17.8.0 ≤ 𝑥 < 17.8.21 |
microsoft | visual_studio_2022 | 17.10.0 ≤ 𝑥 < 17.10.14 |
microsoft | visual_studio_2022 | 17.12.0 ≤ 𝑥 < 17.12.8 |
microsoft | visual_studio_2022 | 17.13.0 ≤ 𝑥 < 17.13.7 |
𝑥
= Vulnerable software versions