Attackers can abuse VS Code configuration files for RCE when a GitHub Codespaces user opens a repository or pull request.
I have zero programming experience. But after a few minor setbacks, I was able to build a custom website in no time.