CVE-2021-28162
In Eclipse Theia versions up to and including 0.16.0, in the notification messages there is no HTML escaping, so Javascr
In Eclipse Theia versions up to and including 0.16.0, in the notification messages there is no HTML escaping, so Javascript code can run.
MEDIUM · CVSS 6.1
EPSS 0.00172
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0