Visual Studio Code
The latest Visual Studio Code coverage — news, analysis, and updates from the WindowsNews.AI desk.
Zaemit.ai Turns AI Website Builder into a Full Agency Toolkit—with Back-End Code and VS Code on Board
South Korean startup WEVEN has launched the professional version of its AI web production platform, Zaemit.ai, adding conversational back-end implementation, a team workspace, and a reusable block...
VS Code 1.126–1.128 Bring Agentic AI Features by Default: How to Disable Them on Windows
Microsoft shipped three Visual Studio Code updates in rapid succession between June 24 and July 8, 2026, packing the releases with agentic AI capabilities that, in many developers' eyes, overshadow...
Millions of VS Code Users Exposed: Code Runner 0.12.2 Flaw Gives Attackers Full Shell Access
A high-severity vulnerability in one of Visual Studio Code’s most popular extensions can let attackers run any command they want on Windows machines simply by tricking a developer into opening a...
VS Code 1.129.1 Rolls Out Agent Host That Lets AI Sessions Span Multiple Windows
Microsoft shipped Visual Studio Code 1.129 on July 15, 2026, and followed it up with the 1.129.1 servicing update on July 17. The release is notable for two changes that move the editor in very...
Urgent VS Code Patch Seals Critical Security Bypass—Developers Must Update Today
Microsoft released Visual Studio Code 1.128.1 on July 14, 2026, to plug a critical security hole designated CVE-2026-57102. The flaw allows an attacker to bypass the editor’s built-in security...
Microsoft Issues High-Severity VS Code Alert—Update to 1.128.1 to Block Local Security Bypass
Microsoft shipped Visual Studio Code 1.128.1 on July 8, 2026, with a stealthy but important security fix that many developers might not prioritize. The update patches CVE-2026-57101, a high-severity...
Visual Studio Code 1.128.1 Fixes Command Injection Flaw; Update Now to Block Code Execution Attacks
Microsoft released Visual Studio Code version 1.128.1 on July 14, 2026, patching a high-severity command-injection vulnerability tracked as CVE-2026-50520. The flaw allows an attacker to execute...
July Patch Tuesday: Update Visual Studio Code Now to Fix Security Feature Bypass and More
Microsoft shipped fixes for a security feature bypass in Visual Studio Code on July 14, 2026, as part of a sprawling Patch Tuesday that also addresses three additional Important vulnerabilities in...
VS Code 1.128.1 Fixes Credential Leak in GitHub Copilot—Update Now
Microsoft has released Visual Studio Code 1.128.1 to patch a security vulnerability that could let attackers steal credentials from GitHub Copilot over a network. The update, published on July 14,...
Study: GitHub Copilot Chat Produced Unsafe Code in 100% of Malicious Prompt Tests
A newly disclosed security study has found that GitHub Copilot Chat in Visual Studio Code can be systematically manipulated into generating unsafe code, with every one of 816 crafted prompts...
VS Code Flaw CVE-2026-47281 Bypasses Workspace Trust—Update to 1.123.2 Immediately
Microsoft has issued an urgent security update for Visual Studio Code, version 1.123.2, to address a critical vulnerability tracked as CVE-2026-47281. The flaw undermines the editor’s workspace...
GitHub Flips the Switch: Copilot Browser Tools Now On by Default in VS Code
GitHub dropped a major update for developers on July 1, 2026: browser tools for GitHub Copilot in Visual Studio Code are now generally available and turned on by default. The change means every...