CVE-2025-47959
13.06.2025, 02:15
Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code over a network.| Vendor | Product | Version |
|---|---|---|
| microsoft | visual_studio_2022 | 17.8.0 ≤ 𝑥 < 17.8.22 |
| microsoft | visual_studio_2022 | 17.10.0 ≤ 𝑥 < 17.10.16 |
| microsoft | visual_studio_2022 | 17.12.0 ≤ 𝑥 < 17.12.9 |
| microsoft | visual_studio_2022 | 17.14.0 ≤ 𝑥 < 17.14.5 |
𝑥
= Vulnerable software versions