<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T19:23:30.450630+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-02094</id>
    <title>bdu:2024-02094</title>
    <updated>2026-10-03T19:23:30.527442+00:00</updated>
    <content>bdu:2024-02094</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-02094"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-160370</id>
    <title>EUVD-2026-160370</title>
    <updated>2026-10-03T19:23:30.527478+00:00</updated>
    <content>EUVD-2026-160370</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-160370"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27295</id>
    <title>fkie_cve-2024-27295</title>
    <updated>2026-10-03T19:23:30.527492+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Directus is a real-time API and App dashboard for managing SQL database content. The password reset mechanism of the Directus backend allows attackers to receive a password reset email of a victim user, specifically having it arrive at a similar email address as the victim with a one or more characters changed to use accents. This is due to the fact that by default MySQL/MariaDB are configured for accent-insensitive and case-insensitive comparisons. This vulnerability is fixed in version 10.8.3.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-27295"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qw9g-7549-7wg5</id>
    <title>GHSA-qw9g-7549-7wg5 — Directus has MySQL accent insensitive email matching</title>
    <updated>2026-10-03T19:23:30.527524+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: directus</p>
<p>## Password reset vulnerable to accent confusion</p>
<p>The password reset mechanism of the Directus backend is implemented in a way where combined with (specific, need to double check if i can work around) configuration in MySQL or MariaDB. As such, it allows attackers to receive a password reset email of a victim user, specifically having it arrive at a similar email address as the victim with a one or more characters changed to use accents.</p>
<p>This is due to the fact that by default MySQL/MariaDB are configured for accent-insenstive and case-insensitve comparisons.</p>
<p>MySQL weak comparison:
```sql
select 1 from directus_users where 'julian@cure53.de' = 'julian@cüre53.de';
```</p>
<p>This is exploitable due to an error in the API using the supplied email address for sending the reset password mail instead of using the email from the database.</p>
<p>### Steps to reproduce:</p>
<p>1. If the attacker knows the email address of the victim user, i.e., `julian@cure53.de`. (possibly just the domain could be enough for an educated guess)
2. A off-by-one accented domain `cüre53.de` can be registered to be able to receive emails.
3. With this email the attacker can request a password reset for `julian@cüre53.de`. 
```http
POST /auth/password/request HTTP/1.1
Host: example.com
[...]
{"email":"julian@cüre53.de"}
```
4. The supplied email (julian@cüre53.de) gets checked against the database and will match the non-accented email `julian@cure53.de` and will continue to email the password reset link to the provide…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qw9g-7549-7wg5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-27295</id>
    <title>gsd-2024-27295</title>
    <updated>2026-10-03T19:23:30.527573+00:00</updated>
    <content>gsd-2024-27295</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-27295"/>
  </entry>
</feed>
