QID 378386

Date Published: 2023-04-12

QID 378386: Microsoft Visual Studio Code Security Update for April 2023

Visual Studio Code is a lightweight but powerful source code editor which runs on your desktop and is available for Windows, macOS and Linux.

Affected Versions:
Visual studio code prior to version 1.77.1

QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of Visual Studio Code.

Visual Studio Code is prone to Remote Code Execution Vulnerability

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    Customers are advised to refer to CVE-2023-24893 for more information pertaining to this vulnerability.

    CVEs related to QID 378386

    Software Advisories
    Advisory ID Software Component Link
    CVE-2023-24893 URL Logo msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-24893