Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2023-32766
Gitpod before 2022.11.3 allows XSS because redirection can occur for some protocols outside of the trusted set of three (vscode: vscode-insiders: jetbrains-gateway:).
Exploit prediction scoring system (EPSS) score
EPSS Score
0.001
EPSS Ranking
34.4%
CVSS Severity
CVSS v3 Score
6.1
References
https://app.safebase.io/portal/71ccd717-aa2d-4a1e-942e-c768d37e9e0c/preview?product=default&tcuUid=1d505bda-9a38-4ca5-8724-052e6337f34d
https://github.com/gitpod-io/gitpod/commit/6771283c3406586e352337675b79ff2ca50f191b
https://github.com/gitpod-io/gitpod/compare/release-2022.11.2...2022.11.3
https://github.com/gitpod-io/gitpod/pull/17559
https://github.com/gitpod-io/gitpod/releases/tag/2022.11.3
https://www.gitpod.io
https://app.safebase.io/portal/71ccd717-aa2d-4a1e-942e-c768d37e9e0c/preview?product=default&tcuUid=1d505bda-9a38-4ca5-8724-052e6337f34d
https://github.com/gitpod-io/gitpod/commit/6771283c3406586e352337675b79ff2ca50f191b
https://github.com/gitpod-io/gitpod/compare/release-2022.11.2...2022.11.3
https://github.com/gitpod-io/gitpod/pull/17559
https://github.com/gitpod-io/gitpod/releases/tag/2022.11.3
https://www.gitpod.io
Products affected by CVE-2023-32766
Gitpod
»
Gitpod
»
Version:
N/A
cpe:2.3:a:gitpod:gitpod:-
Gitpod
»
Gitpod
»
Version:
0.10.0
cpe:2.3:a:gitpod:gitpod:0.10.0
Gitpod
»
Gitpod
»
Version:
0.6.0
cpe:2.3:a:gitpod:gitpod:0.6.0
Gitpod
»
Gitpod
»
Version:
0.8.0
cpe:2.3:a:gitpod:gitpod:0.8.0
Gitpod
»
Gitpod
»
Version:
0.9.0
cpe:2.3:a:gitpod:gitpod:0.9.0
Gitpod
»
Gitpod
»
Version:
2022.11.2
cpe:2.3:a:gitpod:gitpod:2022.11.2
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved