Security Feature Bypass in Visual Studio Code Python Extension
CVE-2026-54981
7.8HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 11 August 2026
What is CVE-2026-54981?
The Visual Studio Code Python extension contains a vulnerability that allows an unauthorized attacker to circumvent a security mechanism locally. By leveraging this flaw, an attacker can execute arbitrary commands or access sensitive functionalities that should be restricted, potentially compromising the security of the development environment.
Affected Version(s)
Python extension for Visual Studio Code 2020 < 1.132.1