A researcher has disclosed details of a severe VS Code vulnerability that can be exploited to steal GitHub tokens and access ...
The agent is doing the actual work, and VS Code is just a window.