QID 378659

Date Published: 2023-07-12

QID 378659: Microsoft Visual Studio Code Security Update for July 2023

Visual Studio Code is a lightweight but powerful source code editor which runs on your desktop and is available for Windows, macOS and Linux.

Affected Versions:
Visual Studio Code - GitHub Pull Requests and Issues Extension prior to 0.66.2

QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of Visual Studio Code.

Visual Studio Code is prone to Remote Code Execution Vulnerability

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    Customers are advised to refer to CVE-2023-36867 for more information pertaining to this vulnerability.

    CVEs related to QID 378659

    Software Advisories
    Advisory ID Software Component Link
    CVE-2023-36867 URL Logo msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2023-36867