An issue in the code-runner.executorMap setting of Visual Studio Code Extensions Code Runner v0.12.2 allows attackers to execute arbitrary code when opening a crafted workspace.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-65715.json"
[ { "events": [ { "introduced": "0.12.2" } ] } ]