CVE-2025-65717: Ritwickdey Live Server

Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue in Visual Studio Code Extensions Live Server v5.7.9 allows attackers to exfiltrate files via user interaction with a crafted HTML page.

Affected products

Published 2026-02-16. Last modified 2026-06-17.