CVE-2026-28353 | aquasecurity trivy-vscode-extension 1.8.12 malicious code (GHSA-8mr6-gf9x-j8qg)
A vulnerability categorized as very critical has been discovered in aquasecurity trivy-vscode-extension 1.8.12. The affected element is an unknown function. Such manipulation leads to embedded malicious code.
This vulnerability is uniquely identified as CVE-2026-28353. The attack can be launched remotely. No exploit exists.