Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-32766

Gitpod before 2022.11.3 allows XSS because redirection can occur for some protocols outside of the trusted set of three (vscode: vscode-insiders: jetbrains-gateway:).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.4%
CVSS Severity
CVSS v3 Score 6.1
References
Products affected by CVE-2023-32766
  • Gitpod » Gitpod » Version: N/A
    cpe:2.3:a:gitpod:gitpod:-
  • Gitpod » Gitpod » Version: 0.10.0
    cpe:2.3:a:gitpod:gitpod:0.10.0
  • Gitpod » Gitpod » Version: 0.6.0
    cpe:2.3:a:gitpod:gitpod:0.6.0
  • Gitpod » Gitpod » Version: 0.8.0
    cpe:2.3:a:gitpod:gitpod:0.8.0
  • Gitpod » Gitpod » Version: 0.9.0
    cpe:2.3:a:gitpod:gitpod:0.9.0
  • Gitpod » Gitpod » Version: 2022.11.2
    cpe:2.3:a:gitpod:gitpod:2022.11.2


Contact Us

Shodan ® - All rights reserved