npm
code-server
4 known vulnerabilities · 0 critical · 2 high
CVE-2023-26114HIGH
code-server vulnerable to Missing Origin Validation in WebSockets
Published Mar 23, 2023
code-server's session cookie can be extracted by having user visit specially crafted proxy URL
Published May 9, 2025
Check your entire dependency tree at onceRun dependency scan →