Skip to content
Threat Feed

Tag

Development-Tools

5 briefs RSS
high advisory

Arbitrary Code Execution in Joker Linter via Malicious Project-Local Configuration

Joker versions before 1.8.2 are vulnerable to arbitrary code execution because the linter automatically traverses directory structures to execute project-local 'linter.*' files, allowing execution of attacker-supplied code within untrusted repositories.

Joker remote-code-execution vulnerability development-tools
1t
high advisory

Multiple Vulnerabilities in Microsoft Development Tools

Multiple vulnerabilities in Microsoft development tools allow remote, anonymous attackers to perform privilege escalation, bypass security mechanisms, and perform unauthorized information manipulation or disclosure.

Visual Studio +1 vulnerability development-tools privilege-escalation
1t
high advisory

JetBrains IntelliJ IDEA: Multiple Vulnerabilities

Multiple vulnerabilities have been identified in JetBrains IntelliJ IDEA, which a remote, unauthenticated attacker can exploit to disclose sensitive information, execute arbitrary code on affected systems, and bypass existing security measures.

IntelliJ IDEA vulnerability rce information-disclosure defense-evasion development-tools
4t
medium advisory

GitHub Copilot and Visual Studio Code Information Disclosure Vulnerability

A vulnerability, identified as CVE-2026-47282, in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose sensitive information over a network due to insufficiently protected credentials.

GitHub Copilot +1 information-disclosure vulnerability development-tools
high threat

JetBrains IntelliJ IDEA Vulnerability Allows Code Execution

A remote, anonymous attacker can exploit an unspecified vulnerability in JetBrains IntelliJ IDEA to achieve arbitrary code execution, enabling them to execute arbitrary program code on the affected system.

IntelliJ IDEA Anonymous Attacker remote-code-execution vulnerability development-tools windows linux macos
2t