CVE-2026-44688: High severity Eclipse Foundation Eclipse Theia vulnerability
In Eclipse Theia versions prior to 1.71.0, the AI chat agent processed workspace file and directory names as part of its prompt context without distinguishing them from system instructions. An attacker could craft a malicious repository with adversarial directory or file names that, when analyzed by the AI agent, would cause the agent to follow attacker-controlled instructions (indirect prompt injection). Combined with other AI chat features available in untrusted workspaces, this enabled attack chains leading to data exfiltration via Markdown image rendering or arbitrary command execution via task definitions.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-44688?
The severity of CVE-2026-44688 is rated as high with a score of 8.4.
How do I fix CVE-2026-44688?
To fix CVE-2026-44688, you should update to Eclipse Theia version 1.71.0 or later.
What products are affected by CVE-2026-44688?
CVE-2026-44688 affects various components of Eclipse Theia including the AI chat agent and related npm packages.
What type of vulnerability is CVE-2026-44688?
CVE-2026-44688 is a vulnerability that allows an attacker to exploit workspace file and directory names without proper validation.
When was CVE-2026-44688 published?
CVE-2026-44688 was published on June 18, 2026.