Multiple Angular Language Service Extension Vulnerabilities Enable RCE Attacks
Source: Cybersecuritynews
Published:
<p>A set of high-severity vulnerabilities has been identified in the Angular Language Service Visual Studio Code extension (Angular.ng-template), potentially exposing developers to remote code execution (RCE) attacks through multiple exploitation paths. The vulnerabilities arise from insecure handli