A vulnerability was found in Eclipse OpenVSX up to 0.20.0 and classified as critical. This issue affects some unknown processing of the file /user/namespace/{namespace}/details. The manipulation of the argument name/description/website/support link/social media leads to improper authorization.
The identification of this vulnerability is CVE-2025-1007. The attack may be initiated remotely. There is no exploit available.