CVE-2019-1414: Microsoft Visual Studio Code

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'Visual Studio Code Elevation of Privilege Vulnerability'.

Affected products

  • Microsoft Visual Studio Code: before 1.39 (fixed in 1.39)

Published 2020-01-24. Last modified 2026-06-17.