CVE-2021-43908: Remote code execution in VSCode restricted mode
hacktron.ai | vulnerability | CVE-2021-43908 | #rce | #vulnerability-research | #webview | #vscode | #csp-bypass | #cve-2021-43908
Summary
This research chains origin leaks, CSP bypasses, and flawed webview message handlers to gain remote code execution in Visual Studio Code even with Restricted Mode enabled.
- CVE
- CVE-2021-43908
- Published
- Collected
Skip to content