SnykforSnyksnyksec.hashnode.net·Mar 6, 2023Gitpod remote code execution 0-day vulnerability via WebSocketsTLDR This article walks us through a current Snyk Security Labs research project focusing on cloud based development environments (CDEs) — which resulted in a full workspace takeover on the Gitpod platform and extended to the user’s SCM account. The ...Application SecurityAdd a thoughtful commentNo comments yetBe the first to start the conversation.