Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 11 Aug 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass a security feature locally. | |
| Title | Visual Studio Code Python Extension Security Feature Bypass Vulnerability | |
| First Time appeared |
Microsoft
Microsoft visual Studio Code |
|
| Weaknesses | CWE-693 CWE-829 |
|
| CPEs | cpe:2.3:a:microsoft:visual_studio_code:*:*:*:*:*:python:*:* | |
| Vendors & Products |
Microsoft
Microsoft visual Studio Code |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-08-11T19:20:01.633Z
Reserved: 2026-06-16T14:10:05.868Z
Link: CVE-2026-54981
No data.
Status : Awaiting Analysis
Published: 2026-08-11T17:18:03.780
Modified: 2026-08-11T18:53:55.320
Link: CVE-2026-54981
No data.
OpenCVE Enrichment
No data.