CVE-2025-68120
BaseFortify
Publication date: 2025-12-30
Last updated on: 2026-01-06
Assigner: Go Project
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| go | go | to 0.52.1 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-NVD-CWE-noinfo |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves the Visual Studio Code Go extension potentially allowing unexpected untrusted code execution. To mitigate this risk, the extension is now disabled when Visual Studio Code is in Restricted Mode.
How can this vulnerability impact me? :
If exploited, this vulnerability could allow untrusted code to execute unexpectedly within the Visual Studio Code Go extension, potentially compromising your development environment or system. Disabling the extension in Restricted Mode helps prevent this risk.
What immediate steps should I take to mitigate this vulnerability?
To mitigate this vulnerability, ensure that the Visual Studio Code Go extension is disabled in Restricted Mode to prevent unexpected untrusted code execution.