SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-81377

MEDIUM · CVSS 6.5 EPSS 0.76%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Visual Studio Code is vulnerable to a path traversal issue that permits unauthorized attackers to manipulate files over a network by bypassing directory restrictions. This flaw could lead to unauthorized access and modification of sensitive data, making it critical for organizations using Visual Studio Code to prioritize remediation. Developers and security teams should address this vulnerability to safeguard their environments against potential tampering attacks.

CVE
CVE-2026-81377
Severity
MEDIUM
CVSS
6.5
EPSS
0.76%

Original NVD Description

Improper limitation of a pathname to a restricted directory ('path traversal') in Visual Studio Code allows an unauthorized attacker to perform tampering over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)