<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T03:58:58.221728+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-290253</id>
    <title>EUVD-2026-290253</title>
    <updated>2026-10-07T03:58:58.271081+00:00</updated>
    <content>EUVD-2026-290253</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-290253"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-35041</id>
    <title>fkie_cve-2026-35041</title>
    <updated>2026-10-07T03:58:58.271117+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>fast-jwt provides fast JSON Web Token (JWT) implementation. From 5.0.0 to 6.2.0, a denial-of-service condition exists in fast-jwt when the allowedAud verification option is configured using a regular expression. Because the aud claim is attacker-controlled and the library evaluates it against the supplied RegExp, a crafted JWT can trigger catastrophic backtracking in the JavaScript regex engine, resulting in significant CPU consumption during verification. This vulnerability is fixed in 6.2.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-35041"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-cjw9-ghj4-fwxf</id>
    <title>GHSA-cjw9-ghj4-fwxf — fast-jwt has a ReDoS when using RegExp in allowed* leading to CPU exhaustion during token verification</title>
    <updated>2026-10-07T03:58:58.271153+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: fast-jwt</p>
<p>## ⚠️ IMPORTANT CLARIFICATIONS</p>
<p>### Affected Configurations
  This vulnerability ONLY affects applications that:
  - Use RegExp objects (not strings) in the allowedAud, allowedIss, allowedSub, allowedJti, or allowedNonce options
  - Configure patterns susceptible to catastrophic backtracking
  - Example: `allowedAud: /^(a+)+X$/` ← VULNERABLE
  - Example: `allowedAud: "api.company.com"` ← SAFE</p>
<p>### Not Affected
  - Applications using string patterns for audience validation (most common)
  - Applications using safe RegExp patterns without nested quantifiers
  - Default fast-jwt configurations</p>
<p>### Assessment Guide
  To determine if you're affected:
  1. Check ifallowedAud, allowedIss, allowedSub, allowedJti, or allowedNonce use RegExp objects (`/pattern/` or `new RegExp()`)
  2. If yes, review the pattern for nested quantifiers like `(a+)+`, `(.*)*`, etc.
  3. If no RegExp usage, you are NOT affected</p>
<p>------</p>
<p>&lt;html&gt;
&lt;body&gt;
&lt;!--StartFragment--&gt;&lt;h2 data-start="218" data-end="228"&gt;Summary&lt;/h2&gt;
&lt;p data-start="230" data-end="364"&gt;A denial-of-service condition exists in &lt;code data-start="270" data-end="280"&gt;fast-jwt&lt;/code&gt; when the &lt;code data-start="290" data-end="302"&gt;allowedAud&lt;/code&gt; verification option is configured using a regular expression.&lt;/p&gt;
&lt;p data-start="366" data-end="618"&gt;Because the &lt;code data-start="378" data-end="383"&gt;aud&lt;/code&gt; claim is attacker-controlled and the library evaluates it against the supplied &lt;code data-start="463" data-end="471"&gt;RegExp&lt;/code&gt;, a…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-cjw9-ghj4-fwxf"/>
  </entry>
</feed>
