Microsoft has had a VS Code extension for a long time, and it finally came back to bite them.
If attackers successfully exploit a security vulnerability in Docker on macOS, they can break out of the sandbox and execute ...