Microsoft
Microsoft Visual Studio: vulnerabilidades y CVE
Microsoft Visual Studio tiene 58 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE58
Últimos 12 meses2
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-69522 | Alta (8.8) | 0.91% | — | 8 sept 2026 | Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network. |
| CVE-2025-64710 | Media (5.3) | 0.32% | — | 13 nov 2025 | Bitplatform Boilerplate is a Visual studio and .NET project template. Versions prior to 9.11.3 are affected by a cross-site scripting (XSS) vulnerability in the WebInteropApp/WebAppInterop, potentially allowing… |
| CVE-2025-49739 | Alta (8.8) | 0.87% | — | 8 jul 2025 | Improper link resolution before file access ('link following') in Visual Studio allows an unauthorized attacker to elevate privileges over a network. |
| CVE-2024-43603 | Media (5.5) | 0.77% | — | 8 oct 2024 | Visual Studio Collector Service Denial of Service Vulnerability |
| CVE-2024-20656 | Alta (7.8) | 3.9% | — | 9 ene 2024 | Visual Studio Elevation of Privilege Vulnerability |
| CVE-2023-24897 | Alta (7.8) | 1.2% | — | 14 jun 2023 | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability |
| CVE-2023-33139 | Media (5.5) | 0.82% | — | 14 jun 2023 | Visual Studio Information Disclosure Vulnerability |
| CVE-2022-35827 | Alta (8.8) | 2.1% | — | 9 ago 2022 | Visual Studio Remote Code Execution Vulnerability |
| CVE-2022-35826 | Alta (8.8) | 2.1% | — | 9 ago 2022 | Visual Studio Remote Code Execution Vulnerability |
| CVE-2022-35825 | Alta (8.8) | 2.1% | — | 9 ago 2022 | Visual Studio Remote Code Execution Vulnerability |
| CVE-2022-35777 | Alta (8.8) | 2.0% | — | 9 ago 2022 | Visual Studio Remote Code Execution Vulnerability |
| CVE-2021-42277 | Alta (7.8) | 0.86% | — | 10 nov 2021 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability |
| CVE-2021-28322 | Alta (7.8) | 1.0% | — | 13 abr 2021 | Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability |
| CVE-2021-28321 | Alta (7.8) | 1.3% | — | 13 abr 2021 | Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability |
| CVE-2021-28313 | Alta (7.8) | 1.0% | — | 13 abr 2021 | Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability |
| CVE-2021-1680 | Alta (7.8) | 0.71% | — | 12 ene 2021 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability |
| CVE-2021-1651 | Alta (7.8) | 0.81% | — | 12 ene 2021 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability |
| CVE-2020-1133 | Alta (7.8) | 0.98% | — | 11 sept 2020 | <p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles file operations. An attacker who successfully exploited this vulnerability could run processes in an… |
| CVE-2020-1130 | Alta (7.8) | 0.78% | — | 11 sept 2020 | <p>An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector improperly handles data operations. An attacker who successfully exploited this vulnerability could run processes in an… |
| CVE-2020-16874 | Alta (7.8) | 4.3% | — | 11 sept 2020 | <p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the… |
| CVE-2020-16856 | Alta (7.8) | 4.4% | — | 11 sept 2020 | <p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the… |
| CVE-2020-1393 | Alta (7.8) | 0.92% | — | 14 jul 2020 | An elevation of privilege vulnerability exists when the Windows Diagnostics Hub Standard Collector Service fails to properly sanitize input, leading to an unsecure library-loading behavior, aka 'Windows Diagnostics Hub… |
| CVE-2020-1293 | Alta (7.8) | 0.84% | — | 9 jun 2020 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability'. This… |
| CVE-2020-1278 | Alta (7.8) | 0.84% | — | 9 jun 2020 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability'. This… |
| CVE-2020-1257 | Alta (7.8) | 0.84% | — | 9 jun 2020 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability'. This… |
| CVE-2020-1203 | Alta (7.8) | 0.95% | — | 9 jun 2020 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector fail to properly handle objects in memory, aka 'Diagnostic Hub Standard Collector… |
| CVE-2020-1202 | Alta (7.8) | 0.95% | — | 9 jun 2020 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector fail to properly handle objects in memory, aka 'Diagnostic Hub Standard Collector… |
| CVE-2019-1232 | Alta (7.8) | 0.83% | — | 11 sept 2019 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operations, aka 'Diagnostics Hub Standard Collector Service Elevation of Privilege… |
| CVE-2019-1079 | Media (6.5) | 6.1% | — | 15 jul 2019 | An information disclosure vulnerability exists when Visual Studio improperly parses XML input in certain settings files, aka 'Visual Studio Information Disclosure Vulnerability'. |
| CVE-2019-0727 | Alta (7.8) | 1.0% | — | 16 may 2019 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.