CVE-2026-57101
EUVD-2026-4427614.07.2026, 18:18
Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| microsoft | visual_studio_code | 1.0.0 ≤ 𝑥 < 1.128.1 |
𝑥
= Vulnerable software versions