CVE-2026-44688 | Eclipse Theia up to 1.70.x Repository inclusion of functionality from untrusted control sphere (EUVD-2026-37898 / Nessus ID 321770)
A vulnerability, which was classified as problematic, was found in Eclipse Theia up to 1.70.x. This affects an unknown function of the component Repository Handler. Such manipulation leads to inclusion of functionality from untrusted control sphere.
This vulnerability is listed as CVE-2026-44688. The attack must be carried out locally. There is no available exploit.
You should upgrade the affected component.