code-server@4.2.0-5046-23f6e99d78054e57244739bd0d4e4ed5b6f05520 vulnerabilities
Run VS Code on a remote server.
-
latest version
4.95.3
-
latest non vulnerable version
-
first published
5 years ago
-
latest version published
4 days ago
-
licenses detected
- >=0
Direct Vulnerabilities
Known vulnerabilities in the code-server package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.Vulnerability | Vulnerable Version |
---|---|
code-server is an application that allows running VS Code on a remote server. Affected versions of this package are vulnerable to Missing Origin Validation in WebSockets handshakes. Exploiting this vulnerability can allow an adversary in specific scenarios to access data from and connect to the code-server instance. How to fix Missing Origin Validation in WebSockets? Upgrade |
<4.10.1
|