← Back to CVE search

CVE-2026-45496

Visual Studio Code

Description

Improper limitation of a pathname to a restricted directory (-path traversal-) in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

CVSS 5.5EPSS 0.357%Risk 0.57
View source
Published
2026-07-14 17:16:49
Affected versions
unknown
Type
Critical software
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N