CVE-2026-89321 | Eclipse OpenVSX up to 1.1.x Zip Extraction /vscode/unpkg Files.copy resource consumption
A vulnerability labeled as problematic has been found in Eclipse OpenVSX up to 1.1.x. The impacted element is the function Files.copy of the file /vscode/unpkg of the component Zip Extraction. The manipulation results in resource consumption.
This vulnerability is identified as CVE-2026-89321. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.VulDB Recent EntriesRead More