CVE-2026-46580
Eclipse Foundation Eclipse Theia, theia
In Eclipse Theia versions prior to 1.71.0, files matching the pattern .prompts/*.prompttemplate in a workspace were automatically loaded and could override or extend the AI agent's system prompts. An attacker could craft a malicious repository containing prompt template files that, when the workspace was opened in Theia, replaced the AI's system instructions with attacker-controlled content (indirect prompt injection). Combined with other AI chat features available in untrusted workspaces, this enabled attack chains leading to data exfiltration via Markdown image rendering or arbitrary comm...
- CVSS
- 8.4
- EPSS
- 0.51% 40.5% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.19