microsoft visual-studio-2019 CVE-2019-1486 vulnerability in Microsoft Products
Published on December 10, 2019

A spoofing vulnerability exists in Visual Studio Live Share when a guest connected to a Live Share session is redirected to an arbitrary URL specified by the session host, aka 'Visual Studio Live Share Spoofing Vulnerability'.

NVD


Products Associated with CVE-2019-1486

stack.watch emails you whenever new vulnerabilities are published in Microsoft Visual Studio 2019 or Microsoft Visual Studio Live Share. Just hit a watch button to start following.

 
 

Affected Versions

Microsoft Visual Studio 2019 version 16.4 (includes 16.0 - 16.3): Microsoft Visual Studio Live Share extension: Microsoft Visual Studio 2019:

Exploit Probability

EPSS
0.29%
Percentile
52.24%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.