CVE-2025-47959
13.06.2025, 02:15
Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code over a network.
Vendor | Product | Version |
---|---|---|
microsoft | visual_studio_2022 | 17.8.0 ≤ 𝑥 < 17.8.22 |
microsoft | visual_studio_2022 | 17.10.0 ≤ 𝑥 < 17.10.16 |
microsoft | visual_studio_2022 | 17.12.0 ≤ 𝑥 < 17.12.9 |
microsoft | visual_studio_2022 | 17.14.0 ≤ 𝑥 < 17.14.5 |
𝑥
= Vulnerable software versions