CVE-2021-34435

CVE-2021-34435

In Eclipse Theia 0.3.9 to 1.8.1, the "mini-browser" extension allows a user to preview HTML files in an iframe inside the IDE. But with the way it is made it is possible for a previewed HTML file to trigger an RCE. This exploit only happens if a user previews a malicious file..

Source: CVE-2021-34435

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다