First published: Tue Apr 13 2021(Updated: )
Visual Studio Code Maven for Java Extension Remote Code Execution Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Visual Studio Code | <0.29.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28472 is rated as high severity due to its potential for remote code execution.
To mitigate CVE-2021-28472, update the Visual Studio Code Maven for Java Extension to version 0.29.0 or later.
CVE-2021-28472 exploits a remote code execution vulnerability within the Visual Studio Code Maven for Java Extension.
Users of the Visual Studio Code Maven for Java Extension prior to version 0.29.0 are affected by CVE-2021-28472.
Currently, there are no known workarounds for CVE-2021-28472; updating the extension is the recommended action.