The January 2026 update has arrived.
Attackers can abuse VS Code configuration files for RCE when a GitHub Codespaces user opens a repository or pull request.
Those project files you deleted might not actually be deleted.