---
id: CVE-2024-30052
title: Visual Studio Remote Code Execution Vulnerability
summary: Visual Studio Remote Code Execution Vulnerability
severity: medium
cvss: 4.7
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N'
cwe:
  - CWE-693
vendor: microsoft
product: visual_studio_2019
affected:
  - 'visual_studio_2019 >= 15.0, < 15.9.63'
  - 'visual_studio_2019 >= 16.0, <= 16.11.37'
  - 'visual_studio_2022 >= 17.4, < 17.4.20'
  - 'visual_studio_2022 >= 17.6, < 17.6.16'
  - 'visual_studio_2022 >= 17.8, < 17.8.11'
  - 'visual_studio_2022 >= 17.10, < 17.10.2'
patched:
  - visual_studio_2019 15.9.63
  - visual_studio_2022 17.10.2
published: '2024-06-11'
updated: '2026-07-20'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-30052'
references:
  - url: 'https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30052'
    label: secure@microsoft.com
  - url: 'https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30052'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
  - exploit-available
epss: 0.01354
epssPercentile: 0.70432
ingestedAt: '2026-07-20T16:41:46.921Z'
exploits:
  github: 1
  githubRepos:
    - 'https://github.com/ynwarcs/CVE-2024-30052'
  checkedAt: '2026-09-26T09:05:31.228Z'
exploitAvailable: true
---

## Overview

Visual Studio Remote Code Execution Vulnerability

## Affected

- `visual_studio_2019 >= 15.0, < 15.9.63`
- `visual_studio_2019 >= 16.0, <= 16.11.37`
- `visual_studio_2022 >= 17.4, < 17.4.20`
- `visual_studio_2022 >= 17.6, < 17.6.16`
- `visual_studio_2022 >= 17.8, < 17.8.11`
- `visual_studio_2022 >= 17.10, < 17.10.2`

## Remediation

Upgrade past the affected range:

- `visual_studio_2019 15.9.63`
- `visual_studio_2022 17.10.2`
