Security Advisory

CVE-2021-41038

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-11-10 17:05:11
Last updated 2024-08-04 02:59:30
Assigner eclipse
CVSS score not scored
State PUBLISHED

Description

In versions of the @theia/plugin-ext component of Eclipse Theia prior to 1.18.0, Webview contents can be hijacked via postMessage().