Giter VIP home page Giter VIP logo

vscode-instant-mongo's People

Contributors

hansvn avatar

Stargazers

 avatar

Watchers

 avatar  avatar

vscode-instant-mongo's Issues

Multiple Vulnerabilities Found in Dependencies

Hello Team.

I hope you are doing well. I am reaching out to inform you of a critical security matter. After cloning the repository, I have identified several vulnerabilities across multiple dependencies. These issues range in severity.

Key Vulnerabilities identified:

Sandbox Bypass [Critical Severity][https://security.snyk.io/vuln/SNYK-JS-VM2-1585918] in [email protected]
Remote Code Execution (RCE) [Critical Severity][https://security.snyk.io/vuln/SNYK-JS-VM2-5772823] in [email protected]

Upgrading these dependencies will not only resolve the current vulnerabilities but will also enhance the overall security posture of the project.

Server starts in background, but vscode never registers database has been spun up

Environment:

OS

Ubuntu 22.04.3 LTS

VSCode

Version: 1.84.2
Commit: 1a5daa3a0231a0fbba4f14db7ec463cf99d7768e
Date: 2023-11-09T10:50:47.800Z
Electron: 25.9.2
ElectronBuildId: 24603566
Chromium: 114.0.5735.289
Node.js: 18.15.0
V8: 11.4.183.29-electron.0
OS: Linux x64 6.2.0-36-generic

Demo of issue:

instant-mongo-disconnect-from-vscode

Steps to reproduce

  1. Install instant mongo extension
  2. Click "Start DB Server"
  3. Wait for however long before deciding nothing is going to happen
  4. Click "Start DB Server" and note the "already running" error in the extension host log

Troubleshooting steps

  • Reinstalled extension
  • Tried using "Instant Mongo: Stop DB"
  • Tried using the actions menu to open information about instance (doesn't open)
  • Searched for listening ports using ss|grep mongo & ss|grep instant but didn't see anything
  • Googled around looking for other things to try :)

SSH connection tunneling?

Hi,

did you implement SSH connection tunneling, if yes how the URL connection should look like?
If not, could you implement it?

Best regards,

Eric

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.