| CVE ID | Published | Description | Score | Severity | 
|---|---|---|---|---|
| Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an unauthorized attacker to execute code locally. | 7.8 | High | ||
| Insufficient granularity of access control in Visual Studio allows an authorized attacker to disclose information locally. | 5.5 | Medium | ||
| Visual Studio Installer Elevation of Privilege Vulnerability | 7.3 | High | ||
| .NET and Visual Studio Remote Code Execution Vulnerability | 7.5 | High | ||
| Visual Studio Collector Service Denial of Service Vulnerability | 5.5 | Medium | ||
| Visual C++ Redistributable Installer Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 4.7 | Medium | ||
| Visual Studio Elevation of Privilege Vulnerability | 6.7 | Medium | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability | 8.8 | High | ||
| Visual Studio Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Denial of Service Vulnerability | 6.2 | Medium | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Elevation of Privilege Vulnerability | 6.7 | Medium | ||
| Visual Studio Tools for Office Runtime Spoofing Vulnerability | 8.1 | High | ||
| .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Information Disclosure Vulnerability | 5.5 | Medium | ||
| Visual Studio Spoofing Vulnerability | 5.5 | Medium | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Information Disclosure Vulnerability | 5.5 | Medium | ||
| Visual Studio Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| .NET and Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| Visual Studio Denial of Service Vulnerability | 5.6 | Medium | ||
| Visual Studio Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| NuGet Client Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 8.8 | High | ||
| .NET and Visual Studio Information Disclosure Vulnerability | 5.5 | Medium | ||
| .NET and Visual Studio Denial of Service Vulnerability | 7.5 | High | ||
| .NET and Visual Studio Denial of Service Vulnerability | 7.5 | High | ||
| Visual Studio Elevation of Privilege Vulnerability | 7.8 | High | ||
| GitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account. | 7.8 | High | ||
| .NET and Visual Studio Remote Code Execution Vulnerability | 6.3 | Medium | ||
| .NET and Visual Studio Denial of Service Vulnerability | 7.5 | High | ||
| .NET Denial of Service Vulnerability | 7.5 | High | ||
| Microsoft Diagnostics Hub Standard Collector Runtime Elevation of Privilege Vulnerability | 7.8 | High | ||
| Visual Studio Elevation of Privilege Vulnerability | 5.5 | Medium | ||
| Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | 7.8 | High | ||
| .NET Core and Visual Studio Information Disclosure Vulnerability | 5.7 | Medium | ||
| Visual Studio Elevation of Privilege Vulnerability | 7.8 | High | ||
| ASP.NET Core and Visual Studio Information Disclosure Vulnerability | 5.5 | Medium | ||
| .NET Core and Visual Studio Information Disclosure Vulnerability | 5.5 | Medium | ||
| .NET Core and Visual Studio Denial of Service Vulnerability | 7.5 | High | ||
| ASP.NET Core Denial of Service Vulnerability | 7.5 | High | ||
| .NET Core Remote Code Execution Vulnerability | 9.8 | Critical | ||
| .NET Core and Visual Studio Denial of Service Vulnerability | 6.5 | Medium | ||
| Visual Studio Code Remote Code Execution Vulnerability | 7.8 | High | ||
| ASP.NET Core and Visual Studio Denial of Service Vulnerability | 7.5 | High | ||
| Visual Studio Remote Code Execution Vulnerability | 7.8 | High | ||
| A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB. It is recommended to update your Brotli library to 1.0.8 or later. If one cannot update, we recommend to use the "streaming" API as opposed to the "one-shot" API, and impose chunk size limits. | 6.5 | Medium |