PT-2026-50688 · Eclipse Foundation · Eclipse Theia
CVSS v4.0
6.7
Medium
| Vector | AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Eclipse Theia versions prior to 1.71.0
Description
The AI chat renders Markdown image tags from AI responses, which triggers unrestricted HTTP requests to arbitrary external URLs. When combined with prompt injection in a malicious workspace, an attacker can force the AI agent to create image URLs that encode sensitive information from the conversation context or workspace, allowing the data to be exfiltrated to servers controlled by the attacker.
Recommendations
Update to version 1.71.0 or later to enable workspace trust enforcement, which disables AI features in untrusted workspaces.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Eclipse Theia