Coder是Coder组织开源的一个可以在公共或私有云基础设施中设置开发环境的应用程序。 Coder存在授权问题漏洞,该漏洞源于 RPC在持久化工作区apps之前未将请求的应用共享级别与模板的 进行验证,导致工作区所有者可以超过管理员配置的最大值。以下版本受到影响:2.29.17之前版本、2.32.7之前版本(自2.30.0起)、2.33.8之前版本(自2.33.0起)和2.34.2之前版本(自2.34.0起)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-55429 | 8.7 HIGH | Coder's workspace app upsert allows cross-workspace agent rebinding via user-controlled ap |
| CVE-2026-55431 | 7.7 HIGH | Coder's session token leaked to arbitrary hosts via `coder open app` for external workspac |
| CVE-2026-55436 | 7.4 HIGH | Coder's AI Bridge Proxy skips TLS certificate verification in default configuration |
| CVE-2026-55438 | 5.8 MEDIUM | Coder's workspace app CORS origin check can be bypassed via UUID-based subdomain spoofing |
| CVE-2026-55430 | 5.8 MEDIUM | Coder's subdomain workspace app routing trusts unauthenticated X-Forwarded-Host header, en |
| CVE-2026-55437 | 5.4 MEDIUM | Coder vulnerable to stored HTML injection via workspace agent logs in AgentLogLine compone |
| CVE-2026-55433 | 5.4 MEDIUM | Coder: Devcontainer recreate endpoint missing write authorization allows read-only roles t |
No comments yet