CVE-2021-43908: Visual Studio Code Spoofing Vulnerability

Overview

Severity
Medium (CVSS 4.3)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C
Category
Spoofing
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2021-Dec
Released
2021-12-14
EPSS Score
9.92% (percentile: 93.0%)

Detection & Weaponization (1 sources)

Maturity: Exploit

  • GitHub PoC: 1 repositories

Affected Products (1)

Developer Tools

  • Visual Studio Code

Security Updates (1)

Acknowledgments

<a href="https://twitter.com/s1r1u5_">s1r1us</a> and <a href="https://twitter.com/pewgrand">Max Garrett</a> with https://thegrandpew.github.io/

Revision History

  • 2021-12-14: Information published.