Github.Com Coder Coder V2 vulnerabilities
23 known vulnerabilities affecting github.com/coder_coder_v2.
Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH12MEDIUM10
Vulnerabilities
Page 2 of 2
CVE-2026-55431P4HIGH≥ 2.34.0, < 2.34.2≥ 2.33.0, < 2.33.8+2 more2026-07-06
CVE-2026-55431 [HIGH] CWE-522 Coder's session token leaked to arbitrary hosts via `coder open app` for external workspace apps
Coder's session token leaked to arbitrary hosts via `coder open app` for external workspace apps
### Summary
`coder open app` opens external workspace-app URLs without validating the scheme or host. When an external app URL contains the `$SESSION_TOKEN` placeholder the CLI replaces it with the user's real session token before handing the URL to the OS open handler.
>
ghsa
CVE-2026-55437P4MEDIUM≥ 2.34.0, < 2.34.2≥ 2.33.0, < 2.33.8+2 more2026-07-06
CVE-2026-55437 [MEDIUM] CWE-79 Coder vulnerable to stored HTML injection via workspace agent logs in AgentLogLine component
Coder vulnerable to stored HTML injection via workspace agent logs in AgentLogLine component
### Summary
The `AgentLogLine` dashboard component instantiated `ansi-to-html` without `escapeXML: true` and inserted the result via `dangerouslySetInnerHTML` so HTML embedded in workspace agent log lines was rendered as live markup. Server-side sanitization did not neutralize HTM
ghsa
CVE-2025-66411P4HIGH≥ 0, < 2.26.5≥ 2.27.0, < 2.27.7+1 more2025-12-03
CVE-2025-66411 [HIGH] CWE-532 Coder logs sensitive objects unsanitized
Coder logs sensitive objects unsanitized
## Summary
Workspace Agent manifests containing sensitive values were logged in plaintext unsanitized
## Details
By default Workspace Agent logs are redirected to [stderr](https://linux.die.net/man/3/stderr)
https://github.com/coder/coder/blob/a8862be546f347c59201e2219d917e28121c0edb/cli/agent.go#L432-L439
[Workspace Agent Manifests](https://coder.com/docs/reference/agent-api/schema
ghsaosv
← Previous2 / 2