在 Eclipse Theia 版本 1.73.0 至 1.75.0(不含)中,AI“Agent 模式”下的文件变更工具( 、 以及替换和状态辅助函数)在解析由模型提供的文件路径时,未进行工作区包含性检查(workspace-containment check)。因此,精心构造的相对路径(如 )、绝对路径或经 展开的路径,都可以利用 Theia 后端操作系统的用户权限,在工作区之外写入或删除文件。 由于路径参数受模型输出影响,攻击者可以通过间接提示注入(indirect prompt injection)来引导该路
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Eclipse Foundation | Eclipse Theia | 1.73.0< 1.75.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Eclipse Theia | 1.73.0 ~ 1.75.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet