Lucene search

K
osvGoogleOSV:GHSA-GCM9-CC3R-C6VJ
HistoryApr 13, 2021 - 3:18 p.m.

Cross-site Scripting (XSS) in Eclipse Theia

2021-04-1315:18:09
Google
osv.dev
10
eclipse theia
cross-site scripting
software
markdown preview
arbitrary code.

EPSS

0.003

Percentile

70.3%

In Eclipse Theia versions up to and including 1.2.0, the Markdown Preview (@theia/preview), can be exploited to execute arbitrary code.

EPSS

0.003

Percentile

70.3%

Related for OSV:GHSA-GCM9-CC3R-C6VJ