<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T11:27:33.687530+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-04702</id>
    <title>bdu:2026-04702</title>
    <updated>2026-10-03T11:27:33.690826+00:00</updated>
    <content>bdu:2026-04702</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-04702"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278370</id>
    <title>EUVD-2026-278370</title>
    <updated>2026-10-03T11:27:33.690856+00:00</updated>
    <content>EUVD-2026-278370</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278370"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33030</id>
    <title>fkie_cve-2026-33030</title>
    <updated>2026-10-03T11:27:33.690871+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Nginx UI is a web user interface for the Nginx web server. In versions 2.3.3 and prior, Nginx-UI contains an Insecure Direct Object Reference (IDOR) vulnerability that allows any authenticated user to access, modify, and delete resources belonging to other users. The application's base Model struct lacks a user_id field, and all resource endpoints perform queries by ID without verifying user ownership, enabling complete authorization bypass in multi-user environments. At time of publication, there are no publicly available patches.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33030"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-5hf2-vhj6-gj9m</id>
    <title>GHSA-5hf2-vhj6-gj9m — nginx-UI has Unencrypted Storage of DNS API Tokens and ACME Private Keys</title>
    <updated>2026-10-03T11:27:33.690901+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/0xJacky/nginx-ui</p>
<p>## Summary</p>
<p>Nginx-UI contains an Insecure Direct Object Reference (IDOR) vulnerability that allows any authenticated user to access, modify, and delete resources belonging to other users. The application's base `Model` struct lacks a `user_id` field, and all resource endpoints perform queries by ID without verifying user ownership, enabling complete authorization bypass in multi-user environments.</p>
<p>## Severity</p>
<p>**High** - CVSS 3.1 Score: **8.8 (High)**</p>
<p>Vector String: `CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H`</p>
<p>**Note**: Original score was 7.5. The score was updated to 8.8 after discovering that sensitive data (DNS API tokens, ACME private keys) is stored in plaintext, which when combined with IDOR allows immediate credential theft without decryption.</p>
<p>## Product</p>
<p>nginx-ui</p>
<p>## Affected Versions</p>
<p>All versions up to and including v2.3.3</p>
<p>## CWE</p>
<p>CWE-639: Authorization Bypass Through User-Controlled Key</p>
<p>## Description</p>
<p>### Exposed DNS Provider Credentials</p>
<p>The `dns.Config` structure (`internal/cert/dns/config_env.go`) contains API credentials:</p>
<p>```go
type Configuration struct {
    Credentials map[string]string `json:"credentials"`  // API tokens here
    Additional  map[string]string `json:"additional"`
}
```</p>
<p>| Provider | Credential Fields | Impact if Leaked |
|----------|------------------|------------------|
| Cloudflare | `CF_API_TOKEN` | Full DNS zone control |
| Alibaba Cloud DNS | `ALICLOUD_ACCESS_KEY`, `ALICLOUD_SECRET_KEY` | Full DNS control + potential IAM acces…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-5hf2-vhj6-gj9m"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0931</id>
    <title>WID-SEC-W-2026-0931 — nginx-ui: Mehrere Schwachstellen</title>
    <updated>2026-10-03T11:27:33.690983+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in nginx-ui ausnutzen, um sich Administratorrechte zu verschaffen, beliebigen Code auszuführen, Daten zu manipulieren, Sicherheitsmaßnahmen zu umgehen oder einen Denial-of-Service-Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0931"/>
  </entry>
</feed>
