Microsoft has had a VS Code extension for a long time, and it finally came back to bite them.
Researchers who found the bug warn that its Moderate rating understates a threat reaching across LLM gateways, MCP servers ...