Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Exposure of sensitive information to an unauthorized actor in Visual Studio Code allows an unauthorized attacker to disclose information over a network.
CVSS Score
6.5
EPSS Score
0.006
Published
2026-06-09
Relative path traversal in Visual Studio Code allows an unauthorized attacker to perform tampering over a network.
CVSS Score
6.5
EPSS Score
0.005
Published
2026-06-09
Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network.
CVSS Score
7.1
EPSS Score
0.003
Published
2026-06-09
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
CVSS Score
8.8
EPSS Score
0.005
Published
2026-06-09
Integer overflow or wraparound in Windows HTTP.sys allows an unauthorized attacker to execute code over a network.
CVSS Score
9.8
EPSS Score
0.043
Published
2026-06-09
Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.003
Published
2026-06-09
Use after free in Windows Kernel allows an unauthorized attacker to execute code over a network.
CVSS Score
9.8
EPSS Score
0.006
Published
2026-06-09
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
CVSS Score
7.8
EPSS Score
0.002
Published
2026-06-09
FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.11.0, FreeSWITCH's bundled XML parser expands nested <!ENTITY> declarations without a depth or count bound, so a small DTD can describe a body that expands exponentially ("billion laughs"). The PIDF body of a SIP PUBLISH is fed to this parser before any digest check, letting an unauthenticated network attacker force unbounded CPU and memory consumption with a single request. This issue has been patched in version 1.11.0.
CVSS Score
7.5
EPSS Score
0.003
Published
2026-06-09
Improper input validation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
9.6
EPSS Score
0.004
Published
2026-06-09


Contact Us

Shodan ® - All rights reserved