CRITICAL CVE-2023-32002 vulnerability in Microsoft Visual Studio 2019 Community at DESKTOP-FNUMV3U

RESOLVED SECURITY TESTING ID: #11 | Created: 2025-12-31 14:01:04
1
Alerts
0
Hosts
0
Files
0
Network
Incident Overview

The use of `Module._load()` can bypass the policy mechanism and require modules outside of the policy.json definition for a given module. This vulnerability affects all users using the experimental policy mechanism in all active release lines: 16.x, 18.x and, 20.x. Please note that at the time this CVE was issued, the policy is an experimental feature of Node.js.

1
2026-01-01 14:31
Unassigned
Vulnerability Policy
VULNERABILITY
Affected Hosts & Users
No hosts affected
No users affected
MITRE ATT&CK Mapping
No MITRE ATT&CK data available for this incident
File Artifacts 0
No file artifacts found for this incident
Network Artifacts 0
No network artifacts found for this incident
Process Artifacts 0
No process artifacts found for this incident
Registry Artifacts 0
No registry artifacts found for this incident
Analyst Verdict
CRITICAL
  • Isolate affected endpoints
  • Investigate all related alerts
  • Document findings
Summary
1
Alerts
0
Hosts
0
Files
0
Network
Alert Categories
VULNERABILITY
Timeline
01-15 14:03:43
CVE-2023-32002 vulnerability in Microsoft Visual Studio 2019 Community at DESKTOP-FNUMV3U
critical - Detected (Scanned)
01-01 14:31:27
Incident Modified
Status or details updated
01-01 14:31:27
Incident Resolved
resolved security testing
12-31 14:01:04
Incident Created
#11 - CVE-2023-32002 vulnerability in Microsoft Visual Studio 2019 Community at DESKTOP-FNUMV3U