A newly disclosed Visual Studio Code vulnerability has raised concern among developers and organisations that rely heavily on GitHub and browser-based coding environments. The issue affects VS Code's webview implementation and could allow attackers to steal GitHub OAuth tokens by tricking a user into clicking a malicious link.

