<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:11:32.731699+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-06477</id>
    <title>bdu:2026-06477</title>
    <updated>2026-10-03T13:11:32.845727+00:00</updated>
    <content>bdu:2026-06477</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-06477"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0490</id>
    <title>certfr-2026-avi-0490 — De multiples vulnérabilités ont été découvertes dans Traefik. Elles permettent à un attaquant de provoquer une atteinte…</title>
    <updated>2026-10-03T13:11:32.845774+00:00</updated>
    <content>certfr-2026-avi-0490</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0490"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-qi45196</id>
    <title>Withdrawn: CLEANSTART-2026-QI45196 — Security fixes in forecastle 1.0.159-r1</title>
    <updated>2026-10-03T13:11:32.845794+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: forecastle</p>
<p>Package forecastle version 1.0.159-r1 fixes 43 vulnerabilities: CVE-2026-40611, CVE-2026-34986, CVE-2026-48020, CVE-2026-26999, CVE-2026-29054...</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-qi45196"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-308343</id>
    <title>EUVD-2026-308343</title>
    <updated>2026-10-03T13:11:32.845826+00:00</updated>
    <content>EUVD-2026-308343</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-308343"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-41174</id>
    <title>fkie_cve-2026-41174</title>
    <updated>2026-10-03T13:11:32.845839+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Traefik is an HTTP reverse proxy and load balancer. Prior to versions 2.11.43, 3.6.14, and 3.7.0-rc.2, there is a potential vulnerability in Traefik's Kubernetes CRD provider cross-namespace isolation enforcement. When providers.kubernetesCRD.allowCrossNamespace=false, Traefik correctly rejects direct cross-namespace middleware references from IngressRoute objects, but fails to apply the same restriction to middleware references nested inside a Chain middleware's spec.chain.middlewares[]. An actor with permission to create or update Traefik CRDs in their own namespace can exploit this to cause Traefik to resolve and apply middleware objects from another namespace, bypassing the documented isolation boundary. This issue has been patched in versions 2.11.43, 3.6.14, and 3.7.0-rc.2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-41174"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xhjw-95fp-8vgq</id>
    <title>GHSA-xhjw-95fp-8vgq — Traefik Kubernetes CRD allows unauthorized cross-namespace middleware binding</title>
    <updated>2026-10-03T13:11:32.845867+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/traefik/traefik/v3, Go: github.com/traefik/traefik/v2, Go: github.com/traefik/traefik</p>
<p>## Summary</p>
<p>There is a vulnerability in Traefik's Kubernetes CRD provider cross-namespace isolation enforcement.</p>
<p>When `providers.kubernetesCRD.allowCrossNamespace=false`, Traefik correctly rejects direct cross-namespace middleware references from `IngressRoute` objects, but fails to apply the same restriction to middleware references nested inside a `Chain` middleware's `spec.chain.middlewares[]`. An actor with permission to create or update Traefik CRDs in their own namespace can exploit this to cause Traefik to resolve and apply middleware objects from another namespace, bypassing the documented isolation boundary.</p>
<p>## Patches</p>
<p>- https://github.com/traefik/traefik/releases/tag/v2.11.43
- https://github.com/traefik/traefik/releases/tag/v3.6.14
- https://github.com/traefik/traefik/releases/tag/v3.7.0-rc.2</p>
<p>## For more information</p>
<p>If there are any questions or comments about this advisory, please [open an issue](https://github.com/traefik/traefik/issues).</p>
<p>&lt;details&gt;
&lt;summary&gt;Original Description&lt;/summary&gt;</p>
<p>### Summary
When `providers.kubernetesCRD.allowCrossNamespace=false`, Traefik still allows a namespace-local `Middleware` of type `Chain` to reference middleware objects from another namespace via `spec.chain.middlewares[].namespace`.</p>
<p>This bypasses the documented cross-namespace restriction and allows an actor with permission to create or update Traefik CRDs in namespace A to bind middleware defined in namespace B to routes in namespace A.</p>
<p>### Details
Traefik documents…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xhjw-95fp-8vgq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10697-1</id>
    <title>openSUSE-SU-2026:10697-1 — traefik-3.6.15-1.1 on GA media</title>
    <updated>2026-10-03T13:11:32.845933+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>traefik-3.6.15-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10697-1"/>
  </entry>
</feed>
