Visual Studio Code npm-script Extension Remote Code Execution Vulnerability
References
| Link | Resource |
|---|---|
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26700 | Patch Vendor Advisory |
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26700 | Patch Vendor Advisory |
Configurations
History
16 Jul 2025, 13:01
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26700 - Patch, Vendor Advisory | |
| First Time |
Microsoft npm
|
|
| CVSS |
v2 : v3 : |
v2 : 6.8
v3 : unknown |
| CPE | cpe:2.3:a:microsoft:npm:*:*:*:*:*:*:*:* |
Information
Published : 2021-02-25 23:15
Updated : 2025-07-16 13:01
NVD link : CVE-2021-26700
Mitre link : CVE-2021-26700
JSON object : View
Products Affected
microsoft
- npm
CWE
