Devspace

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 2
    Known Exploited: 0
    1
    Critical Level Threats
    1
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-42283

    DevSpace UI Server WebSocket CheckOrigin does not validate source

    Last Modified: May 21, 2026
    Published: May 14, 2026

    CVE-2020-15391

    The UI in DevSpace 4.13.0 allows web sites to execute actions on pods (on behalf of a victim) because of a lack of authentication for the WebSocket protocol. This leads to remote code execution.

    Last Modified: Nov 21, 2024
    Published: Jul 23, 2020
    Items Per Page
    Devspace Vulnerabilities & Security CVEs | CVE-DB