← Back

Visual Studio

visual_studio

Vendor: Microsoft • 56 CVEs

CVEs (56)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Jul 16, 2025
Jul 8, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network.
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Oct 17, 2024
Oct 8, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Visual Studio Collector Service Denial of Service Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Nov 21, 2024
Jan 9, 2024
N/A· v4
7.8 HIGH· v3
N/A· v2
Visual Studio Elevation of Privilege Vulnerability
1Microsoft
6.net
.net FrameworkVisual Studio+3 more
Nov 21, 2024
Jun 14, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Nov 21, 2024
Jun 14, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
Visual Studio Information Disclosure Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Nov 21, 2024
Aug 9, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Visual Studio Remote Code Execution Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Nov 21, 2024
Aug 9, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Visual Studio Remote Code Execution Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
Nov 21, 2024
Aug 9, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Visual Studio Remote Code Execution Vulnerability
1Microsoft
4Visual Studio
Visual Studio 2017Visual Studio 2019+1 more
May 29, 2025
Aug 9, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
Visual Studio Remote Code Execution Vulnerability
1Microsoft
8Visual Studio
Visual Studio 2017Visual Studio 2019+5 more
Nov 21, 2024
Nov 10, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Apr 13, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Apr 13, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Apr 13, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Jan 12, 2021
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Jan 12, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Feb 23, 2026
Sep 11, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevat...Show more
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p> <p>An attacker could exploit this vulnerability by running a specially crafted application on the victim system.</p> <p>The update addresses the vulnerability by correcting the way the Diagnostics Hub Standard Collector handles file operations.</p>Show less
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Feb 23, 2026
Sep 11, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations. An attacker who successfully exploited this vulnerability could run processes in an elevat...Show more
<p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p> <p>An attacker could exploit this vulnerability by running a specially crafted application on the victim system.</p> <p>The update addresses the vulnerability by correcting the way the Diagnostics Hub Standard Collector handles data operations.</p>Show less
1Microsoft
3Visual Studio
Visual Studio 2017Visual Studio 2019
Feb 23, 2026
Sep 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the curre...Show more
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</p> <p>To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted file with an affected version of Visual Studio.</p> <p>The update addresses the vulnerability by correcting how Visual Studio handles objects in memory.</p>Show less
1Microsoft
3Visual Studio
Visual Studio 2017Visual Studio 2019
Feb 23, 2026
Sep 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the curre...Show more
<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</p> <p>To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted file with an affected version of Visual Studio.</p> <p>The update addresses the vulnerability by correcting how Visual Studio handles objects in memory.</p>Show less
1Microsoft
6Visual Studio
Visual Studio 2017Visual Studio 2019+3 more
Nov 21, 2024
Jul 14, 2020
N/A· v4
7.8 HIGH· v3
4.6 MEDIUM· v2
An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector Service fails to properly sanitize input, leading to an unsecure library-loading behavior, aka 'Windows Diagnostics Hub E...Show more
An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector Service fails to properly sanitize input, leading to an unsecure library-loading behavior, aka 'Windows Diagnostics Hub Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1418.Show less