VYPR

Codeql

by Microsoft

Source repositories

CVEs (1)

  • CVE-2019-16765HigNov 25, 2019
    risk 0.41cvss 7.4epss 0.05

    If an attacker can get a user to open a specially prepared directory tree as a workspace in Visual Studio Code with the CodeQL extension active, arbitrary code of the attacker's choosing may be executed on the user's behalf. This is fixed in version 1.0.1 of the extension. Users…