{"id":"CVE-2026-86671","title":"In Eclipse Che versions 7.29.0 and later, the GET `/api/scm/resolve` and `POST /api/factory/resolver` endpoints pass an attacker-controlled URL to `URLFetcher.fetch()`, which calls `new URL(url).openConnection()` with no scheme or host a…","summary":"In Eclipse Che versions 7.29.0 and later, the GET `/api/scm/resolve` and `POST /api/factory/resolver` endpoints pass an attacker-controlled URL to `URLFetcher.fetch()`, which calls `new URL(url).openConnection()` with no scheme or host a…","severity":"high","cvss":8.4,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:N","cwe":["CWE-73","CWE-522","CWE-918"],"vendor":"Eclipse Foundation","product":"Eclipse Che","affected":["eclipse_che >= 7.29.0 < 7.123.0"],"published":"2026-10-05","updated":"2026-10-05","sourceUpdated":"2026-10-05T17:17:16.910","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-86671","references":[{"url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/278","label":"emo@eclipse.org"},{"url":"https://gitlab.eclipse.org/security/vulnerability-reports/-/work_items/620","label":"emo@eclipse.org"},{"url":"https://redhat.atlassian.net/browse/CRW-11956","label":"emo@eclipse.org"}],"tags":["nvd","cve.org"],"cvssSource":"cna","ingestedAt":"2026-10-05T17:27:45.055Z","slug":"CVE-2026-86671","body":"## Overview\n\nIn Eclipse Che versions 7.29.0 and later, the GET `/api/scm/resolve` and `POST /api/factory/resolver` endpoints pass an attacker-controlled URL to `URLFetcher.fetch()`, which calls `new URL(url).openConnection()` with no scheme or host allow-list and returns the response body to the caller. Any authenticated Che user can read arbitrary local files via the file:// scheme (including the pod's Kubernetes service-account token at `file:///var/run/secrets/kubernetes.io/serviceaccount/token`), reach internal HTTP services and cloud instance metadata endpoints (169.254.169.254), and have their stored SCM personal access token attached as an `Authorization` header to a host of their choosing. The same credential-forwarding behavior also fires when a victim opens a workspace from a malicious devfile whose `parent.uri` points to an attacker-controlled server, enabling exfiltration of the victim's SCM PAT without direct API access. No fix is available.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":46,"depthScoreParts":{"impact":46.2,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}