Review reviewHigh
CVE-2026-40376
Microsoft Visual Studio Code, visual studio code
Improper input validation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.
- CVSS
- 8.1
- EPSS
- 0.67% 48.5% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.10