<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T18:01:25.557924+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-04700</id>
    <title>bdu:2026-04700</title>
    <updated>2026-10-04T18:01:25.565527+00:00</updated>
    <content>bdu:2026-04700</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-04700"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278180</id>
    <title>EUVD-2026-278180</title>
    <updated>2026-10-04T18:01:25.565568+00:00</updated>
    <content>EUVD-2026-278180</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278180"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33027</id>
    <title>fkie_cve-2026-33027</title>
    <updated>2026-10-04T18:01:25.565589+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, the nginx-ui configuration improperly handles URL-encoded traversal sequences. When specially crafted paths are supplied, the backend resolves them to the base Nginx configuration directory and executes the operation on the base directory (/etc/nginx). In particular, this allows an authenticated user to remove the entire /etc/nginx directory, resulting in a partial Denial of Service. This issue has been patched in version 2.3.4.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33027"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m8p8-53vf-8357</id>
    <title>GHSA-m8p8-53vf-8357 — Nginx Configuration Directory Vulnerable to Recursive Deletion via Improper Path Validation</title>
    <updated>2026-10-04T18:01:25.565637+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/0xJacky/Nginx-UI</p>
<p>## Summary
The nginx-ui configuration improperly handles URL-encoded traversal sequences. When specially crafted paths are supplied, the backend resolves them to the base Nginx configuration directory and executes the operation on the base directory (/etc/nginx). In particular, this allows an authenticated user to remove the entire `/etc/nginx` directory, resulting in a partial Denial of Service.</p>
<p>## Details
The file deletion logic fails to correctly validate and normalize paths containing URL-encoded traversal sequences such as `..%252F`.</p>
<p>When such input is processed, the internal path resolution logic attempts to clamp the path into the allowed configuration directory. Instead of rejecting the traversal attempt, the clamping mechanism resolves the path to the base Nginx configuration directory itself.</p>
<p>Because the deletion handler invokes `os.RemoveAll`, which recursively removes directories, this results in the deletion of the entire `/etc/nginx` directory.</p>
<p>This behavior creates a dangerous interaction between path normalization and deletion logic:</p>
<p>- Traversal sequences are not rejected.
- Double-encoding (`..%252F`) is used to bypass initial shallow filters.
- The clamping mechanism resolves malicious paths to the base configuration directory.
- The deletion handler recursively deletes the resolved path.</p>
<p>As a result, an attacker can trigger deletion of the entire Nginx configuration directory instead of being blocked by path validation logic.</p>
<p>### Root Cause</p>
<p>The vul…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m8p8-53vf-8357"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0931</id>
    <title>WID-SEC-W-2026-0931 — nginx-ui: Mehrere Schwachstellen</title>
    <updated>2026-10-04T18:01:25.565726+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in nginx-ui ausnutzen, um sich Administratorrechte zu verschaffen, beliebigen Code auszuführen, Daten zu manipulieren, Sicherheitsmaßnahmen zu umgehen oder einen Denial-of-Service-Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0931"/>
  </entry>
</feed>
