PT-2025-53815 · Microsoft · Visual Studio Code Go Extension

Choe Wonwoo

·

Published

2025-12-29

·

Updated

2026-01-06

·

CVE-2025-68120

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:P
Name of the Vulnerable Software and Affected Versions Visual Studio Code Go extension (affected versions not specified)
Description The Visual Studio Code Go extension was disabled in Restricted Mode to prevent unexpected untrusted code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2026-01279
CVE-2025-68120
GHSA-FJMR-7667-8V4P
GO-2025-4249
SUSE-SU-2026:0037-1

Affected Products

Visual Studio Code Go Extension