Login
From:
Doyensec's Blog
(Uncensored)
subscribe
Don't Clone That Repo: Visual Studio Code^2 Execution
https://blog.doyensec.com/2020/03/16/vscode_codeexec.html
links
backlinks
Roast topics
Find topics
Find it!
This is the story of how I stumbled upon a code execution vulnerability in the Visual Studio Code Python extension. It currently has 16.5M+ installs reported in the extension marketplace.