IDE Supply Chain Blind Spot: High-Impact Flaws in Popular VS Code Extensions Enable Local File Theft and Remote Code Execution
1. Executive Summary Security researchers have disclosed high-to-critical vulnerabilities across several widely used Visual Studio Code (VS Code) extensions—reported to total 128M+ installs—that could enable local file exfiltration and, in…
