High severity7.8NVD Advisory· Published Apr 5, 2021· Updated Jun 17, 2026
CVE-2021-29261
CVE-2021-29261
Description
The unofficial Svelte extension before 104.8.0 for Visual Studio Code allows attackers to execute arbitrary code via a crafted workspace configuration.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <104.8.0
- Range: <104.8.0
Patches
Vulnerability mechanics
References
5- github.com/sveltejs/language-tools/commit/5d7bf1fd98bfe2cd2080863a3c95ce099b898075nvdPatchThird Party Advisory
- github.com/sveltejs/language-tools/releasesnvdThird Party Advisory
- github.com/sveltejs/language-tools/releases/tag/extensions-104.8.0nvdRelease NotesThird Party Advisory
- marketplace.visualstudio.com/itemsnvdProductThird Party Advisory
- vuln.ryotak.me/advisories/3nvdThird Party Advisory
News mentions
0No linked articles in our index yet.