Kaspersky ID:
KLA91205
Дата обнаружения:
11/08/2026
Обновлено:
09/09/2026

Описание

Multiple vulnerabilities were found in Microsoft Developer Tools. Malicious users can exploit these vulnerabilities to bypass security restrictions, cause denial of service, execute arbitrary code, gain privileges, obtain sensitive information.

Below is a complete list of vulnerabilities:

  1. An information disclosure vulnerability in Visual Studio Code can be exploited remotely to obtain sensitive information.
  2. A remote code execution vulnerability in Microsoft PowerShell can be exploited remotely to execute arbitrary code.
  3. A security feature bypass vulnerability in Visual Studio Code Python Extension can be exploited remotely to bypass security restrictions.
  4. An information disclosure vulnerability in PowerShell can be exploited remotely to obtain sensitive information.
  5. An elevation of privilege vulnerability in .NET can be exploited remotely to gain privileges.
  6. A security feature bypass vulnerability in Visual Studio Code can be exploited remotely to bypass security restrictions.
  7. A remote code execution vulnerability in Visual Studio Code can be exploited remotely to execute arbitrary code.
  8. An elevation of privilege vulnerability in PowerShell can be exploited remotely to gain privileges.
  9. An elevation of privilege vulnerability in .NET can be exploited remotely to execute arbitrary code.
  10. An elevation of privilege vulnerability in .NET Framework can be exploited remotely to gain privileges.
  11. A remote code execution vulnerability in .NET Framework can be exploited remotely to execute arbitrary code.
  12. An information disclosure vulnerability in Microsoft QUIC can be exploited remotely to obtain sensitive information.
  13. A security feature bypass vulnerability in .NET can be exploited remotely to bypass security restrictions.
  14. An information disclosure vulnerability in .NET can be exploited remotely to obtain sensitive information.
  15. A denial of service vulnerability in .NET can be exploited remotely to cause denial of service.
  16. A security feature bypass vulnerability in CoPilot Chat can be exploited remotely to bypass security restrictions.
  17. An elevation of privilege vulnerability in GitHub Copilot and Visual Studio Code can be exploited remotely to gain privileges.
  18. A security feature bypass vulnerability in Microsoft PowerShell can be exploited remotely to bypass security restrictions.
  19. A remote code execution vulnerability in .NET Core can be exploited remotely to execute arbitrary code.

Первичный источник обнаружения

Эксплуатация

Связанные продукты

Список CVE

  • CVE-2026-47285
    high
  • CVE-2026-54981
    critical
  • CVE-2026-58612
    critical
  • CVE-2026-58641
    critical
  • CVE-2026-58650
    critical
  • CVE-2026-59113
    critical
  • CVE-2026-59119
    high
  • CVE-2026-62871
    critical
  • CVE-2026-62872
    critical
  • CVE-2026-62886
    critical
  • CVE-2026-62897
    high
  • CVE-2026-62898
    critical
  • CVE-2026-62899
    high
  • CVE-2026-62900
    high
  • CVE-2026-62901
    critical
  • CVE-2026-62902
    high
  • CVE-2026-62909
    critical
  • CVE-2026-65675
    high
  • CVE-2026-65810
    critical
  • CVE-2026-69278
    critical
  • CVE-2026-69306
    critical
  • CVE-2026-69320
    critical
  • CVE-2026-70335
    critical
  • CVE-2026-70336
    critical
  • CVE-2026-70337
    critical
  • CVE-2026-70338
    critical
  • CVE-2026-70354
    critical
  • CVE-2026-50523
    critical

Список KB

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.