Affected by GO-2024-3228
and 2 other vulnerabilities
GO-2024-3228: Coder vulnerable to post-auth URL redirection to untrusted site ('Open Redirect') in github.com/coder/coder
GO-2025-3921: Coder accepts an APIKey beyond the linked OIDC expiry if there is no refresh token in github.com/coder/coder
GO-2025-3938: Coder vulnerable to privilege escalation could lead to a cross workspace compromise in github.com/coder/coder

The highest tagged major version is
v2.
package
Version:
v0.4.1
Opens a new window with list of versions in this module.
Published: Apr 12, 2022
License: AGPL-3.0
Opens a new window with license information.
Imports: 15
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
¶
New creates a new tunnel pointing at the URL provided.
Once created, it returns the external hostname that will resolve to it.
The tunnel will exit when the context provided is canceled.
Upstream connection occurs async through Cloudflare, so the error channel
will only be executed if the tunnel has failed after numerous attempts.
Source Files
¶
Click to show internal directories.
Click to hide internal directories.