CVE Browser
Coder: Workspace agent API insecure redirect handling allowed cross-agent file read and write
Coder's workspace app CORS origin check can be bypassed via UUID-based subdomain spoofing
Coder vulnerable to stored HTML injection via workspace agent logs in AgentLogLine component
Coder's AI Bridge Proxy skips TLS certificate verification in default configuration
Coder: Devcontainer recreate endpoint missing write authorization allows read-only roles to destroy containers
Coder's sub-agent app registration bypasses template port-sharing policy enforcement
Coder's session token leaked to arbitrary hosts via `coder open app` for external workspace apps
Coder's subdomain workspace app routing trusts unauthenticated X-Forwarded-Host header, enabling cross-app data access
Coder's workspace app upsert allows cross-workspace agent rebinding via user-controlled app ID
Coder: Route hijacking through lack of validation of agent-supplied AllowedIPs in tailnet coordinator
Coder vulnerable to SSH config injection via unsanitized server-supplied values in `coder config-ssh`
Coder's unbounded memory allocation in provisioner file upload allows authenticated denial of service
Coder: Zip upload decompression lacks aggregate size limit, enabling denial of service
Coder: User-admin role can reset owner account password
Coder's OIDC email_verified type coercion bypass enables account takeover via unverified email linking
Coder vulnerable to OIDC account takeover via email-based user matching and email_verified bypass
Coder: PKCS#7 signature bypass in Azure instance identity allows unauthenticated agent token theft
Coder vulnerable to unauthenticated SSRF via Azure Instance Identity Endpoint
Coder vulnerable to workspace auto-creation via crafted URL parameters without user consent
Coder vulnerable to denial of service via unbounded request body in AI Bridge provider endpoints
Suspended Coder users retain access to AI Bridge LLM proxy endpoints
Code Extension Marketplace has a Zip Slip Path Traversal
Coder logged sensitive objects unsanitized
AgentAPI exposed user chat history via a DNS rebinding attack
Coder's privilege escalation vulnerability could lead to a cross workspace compromise
Showing 1 to 25 CVEs · page 1 (more available)