Every CVE whose affected-product data names Microsoft Python, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (6)
CVE-2020-1171 — CVSS 8.8 (high): A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads configuration files after opening a…
CVE-2020-1192 — CVSS 7.8 (high): A remote code execution vulnerability exists in Visual Studio Code when the Python extension loads workspace settings from a notebook file…
CVE-2025-49714 — CVSS 7.8 (high): Trust boundary violation in Visual Studio Code - Python extension allows an unauthorized attacker to execute code locally.
CVE-2026-54981 — CVSS 7.8 (high): Inclusion of functionality from untrusted control sphere in Visual Studio Code - Python extension allows an unauthorized attacker to bypass…