First published: Thu May 21 2020(Updated: )
A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads workspace settings from a notebook file, aka 'Visual Studio Code Python Extension Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1171.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Visual Studio Code | <2020.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1192 has a high severity rating due to its potential for remote code execution.
To fix CVE-2020-1192, upgrade to Visual Studio Code version 2020.5.0 or later.
CVE-2020-1192 affects the Visual Studio Code Python extension prior to version 2020.5.0.
CVE-2020-1192 is a remote code execution vulnerability.
The vendor for CVE-2020-1192 is Microsoft.