CVE-2026-46354Disclosure(coder / coder)

LOWCVSS 9.1 · CRITICAL

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Patch coder coder systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Coder allows organizations to provision remote development environments via Terraform. In versions prior tp 2.24.5, 2.29.13, 2.30.8, 2.31.12, 2.32.2, and 2.33.3, `azureidentity.Validate()` verifies that the PKCS#7 signer certificate chains to a trusted Azure CA but never verifies the PKCS#7 signature itself. An attacker can embed a legitimate Azure certificate alongside arbitrary content e.g. `{"vmId":"<target>"}` and the forged `vmId` will be accepted returning the victim workspace agent's session token. No authentication is required. The attacker only needs to know a target VM's `vmId` which is a `UUIDv4`. That's a practical limitation which would typically require prior access to be exploited. Versions 2.24.5, 2.29.13, 2.30.8, 2.31.12, 2.32.2, and 2.33.3 patch the issue. As a workaround, reconfigure any Azure templates to use token authentication rather than `azure-instance-identity`.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-347

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • coder

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 6 signals
  • Disclosure: 4 classified signals
  • Peaked 1d ago at 4 mentions (2026-05-21); latest day: 2
  • 7 total mentions across 3 days

Affected systems

Vendors
Products
coder

Deep dive

Activity timeline7 mentions / 3d
01234Mentions · 2026-05-20: 1Mentions · 2026-05-21: 4Mentions · 2026-05-22: 2PoC Mentioned / Linked · 2026-05-22: 1Patch / Workaround · 2026-05-21: 3Technical Details · 2026-05-20: 1Technical Details · 2026-05-21: 3Technical Details · 2026-05-22: 205-2005-2105-22
Signal classification2 categories
Disclosure
457.1%
Patch
342.9%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-05-201
Disclosure1
2026-05-214
Disclosure1Patch3
2026-05-222
Disclosure2
Full discourse7 posts
  • Netlas.io@Netlas_io
    Disclosure

    CVE-2026-46354: Token theft in Coder, 9.1 rating 🔥 New vulnerability in Coder allows an attacker on any Azure VM to steal an agent session token, and with the stolen token get access to Git SSH private key, OAuth access tokens or workspace secrets. 👉 https://nt.ls/JwI80

    Post summary

    A newly identified vulnerability in Coder (CVE-2026-46354) permits an attacker on any Azure VM to steal agent session tokens and obtain sensitive secrets, highlighting its severity. The post focuses on announcing the discovery and impact, without evidence of active exploitation, exploit code, or patch information.

    0301521.2K
    7.6K followersView on X
  • yousukezan@yousukezan
    Patch

    AI開発基盤「Coder」で、認証不要でワークスペース乗っ取りが可能な重大脆弱性CVE-2026-46354が修正された。Azure環境ではOAuthトークンやGit秘密鍵まで窃取でき、開発基盤全体が侵害される危険があった。 問題はAzure認証処理「azureidentity.Validate()」に存在する。CoderはAzure IMDSのPKCS#7証明書を使って正規VMを検証していたが、証明書チェーン確認だけを行い、本来必須の署名検証を実施していなかった。 攻撃者は公開Certificate Transparencyログから取得可能な正規Azure証明書を利用し、任意のvmidを含む偽PKCS#7データを作成するだけでよい。これを「/api/v2/workspaceagents/azure-instance-identity」へ送信すると、Coderは偽データを正規VMとして受け入れ、被害ワークスペースのセッショントークンを返してしまう。 取得したトークンからは、GitHubやGitLab向けOAuthアクセストークン、Git SSH秘密鍵、APIキーや環境変数を含むワークスペース秘密情報まで窃取可能となる。CVSSは9.1で、Coder v2全系統が影響を受ける。 修正はPR #25286で実施され、v2.33.3、v2.32.2、v2.31.12、v2.30.8、v2.29.13、v2.24.5以降で解消された。即時更新できない場合は、Azure Instance Identity認証を無効化し、token認証へ切り替える暫定対策が推奨されている。 https://securityonline.info/coder-signature-bypass-vulnerability-cve-2026-46354-token-theft/

    Post summary

    CVE‑2026‑46354 was a high‑severity authentication bypass in Coder that allowed Azure VM impersonation and token theft, but the issue has been fixed via PR #25286 and a recommended workaround is provided.

    010811.6K
    14.5K followersView on X
  • yousukezan@yousukezan
    Patch

    AI開発基盤「Coder」で、認証不要でワークスペース乗っ取りが可能な重大脆弱性CVE-2026-46354が修正された。Azure環境ではOAuthトークンやGit秘密鍵まで窃取でき、開発基盤全体が侵害される危険があった。 問題はAzure認証処理「azureidentity.Validate()」に存在する。CoderはAzure IMDSのPKCS#7証明書を使って正規VMを検証していたが、証明書チェーン確認だけを行い、本来必須の署名検証を実施していなかった。 攻撃者は公開Certificate Transparencyログから取得可能な正規Azure証明書を利用し、任意のvmidを含む偽PKCS#7データを作成するだけでよい。これを「/api/v2/workspaceagents/azure-instance-identity」へ送信すると、Coderは偽データを正規VMとして受け入れ、被害ワークスペースのセッショントークンを返してしまう。 取得したトークンからは、GitHubやGitLab向けOAuthアクセストークン、Git SSH秘密鍵、APIキーや環境変数を含むワークスペース秘密情報まで窃取可能となる。CVSSは9.1で、Coder v2全系統が影響を受ける。 修正はPR25286で実施され、v2.33.3、v2.32.2、v2.31.12、v2.30.8、v2.29.13、v2.24.5以降で解消された。即時更新できない場合は、Azure Instance Identity認証を無効化し、token認証へ切り替える暫定対策が推奨されている。 https://securityonline.info/coder-signature-bypass-vulnerability-cve-2026-46354-token-theft/

    Post summary

    The CVE‑2026‑46354 vulnerability in Coder, which allowed unauthenticated workspace takeover via forged PKCS#7 certificates, has been fixed (PR25286) and affected versions listed; a workaround of disabling Azure Instance Identity is also recommended.

    000511.4K
    14.5K followersView on X
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨Critical- Coder PKCS#7 Signature Bypass in Azure Instance Identity (CVE-2026-46354) azureidentity.Validate() in Coder checks only that the PKCS#7 signer certificate chains to a trusted Azure CA, but does not verify the signature itself. An unauthenticated attacker who knows a target VM's vmId (UUIDv4) can forge a valid-looking identity document and steal the workspace agent's session token. With the stolen token the attacker can extract Git SSH keys, OAuth tokens (GitHub/GitLab/Bitbucket), workspace secrets, and environment variables. 👉Coder v2 <= 2.33.2 (and all earlier v2 releases)

    Post summary

    The post announces CVE-2026-46354, a PKCS#7 signature bypass in Azure Instance Identity that lets unauthenticated attackers forge identity documents and steal workspace tokens; no mitigation or active exploitation details are provided.

    00020129
    255 followersView on X
  • Orca Security@orcasec
    Disclosure

    🚨 Critical Alert CVE-2026-46354 lets attackers bypass Coder's signature verification and walk away with your SSH keys &amp; OAuth tokens. Zero auth needed. We broke it down, and what to do about it 👇 https://orca.security/resources/blog/coder-signature-bypass-cve-2026-46354/?utm_source=twitter&utm_medium=organic+social&utm_campaign=orca+blog https://t.co/ZKOe3N3a84

    Post summary

    The tweet alerts on CVE-2026-46354, highlighting that attackers can bypass Coder's signature verification to steal SSH keys and OAuth tokens without authentication, and directs readers to a detailed blog for deeper analysis.

    00010131
    4.8K followersView on X
  • Gray Hats@the_yellow_fall
    Patch

    Coder patches a critical 9.1 CVSS signature bypass (CVE-2026-46354) in Azure identities that allows unauthenticated workspace token theft. Patch now! #Coder #AzureSecurity #CVE #CloudSecurity #InfoSec #VulnerabilityAlert #DevSecOps #GitSecurity #OAuth https://securityonline.info/coder-signature-bypass-vulnerability-cve-2026-46354-token-theft/ https://t.co/l9Kh4TghLp

    Post summary

    The tweet reports that CVE-2026-46354, a critical 9.1 CVSS token‑theft vulnerability in Azure identities, has been patched and urges users to apply the fix.

    01000290
    12.2K followersView on X
  • キタきつね@foxbook
    Disclosure

    署名バイパス警告:重大なコード作成上の脆弱性(CVE-2026-46354)により、Gitキーと開発者トークンが漏洩する恐れがあります Signature Bypass Alert: Critical Coder Flaw (CVE-2026-46354) Exposes Git Keys and Developer Tokens #DailyCyberSecurity (May 21) https://securityonline.info/coder-signature-bypass-vulnerability-cve-2026-46354-token-theft/

    Post summary

    An alert reports CVE-2026-46354, claiming it can expose Git keys and developer tokens, but offers no evidence of exploitation, detailed technical data, or mitigation steps.

    00000256
    4.8K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appcodercoder-go-

Explore more