CVE-2023-39956: Electron: CVE-2023-39956 -Visual Studio Code Remote Code Execution Vulnerability

Overview

Severity
N/A
Category
Remote Code Execution
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2023-Sep
Released
2023-09-12
EPSS Score
0.03% (percentile: 7.7%)

FAQ

Why is this Electron CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Electron software which is consumed by Visual Studio Code. It is being documented in the Security Update Guide to announce that the latest build of Visual Studio Code is no longer vulnerable. Please see Security Update Guide Supports CVEs Assigned by Industry Partners for more information.

Affected Products (1)

Developer Tools

  • Visual Studio Code

Security Updates (1)

Acknowledgments

Simon Siefke

Revision History

  • 2023-09-12: Information published.