<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:36:57 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-40254</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-40254</link>
      <description>EUVD-2026-40254</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-40254</guid>
    </item>
    <item>
      <title>fkie_cve-2020-11020</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-11020</link>
      <description>&lt;p&gt;Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. It is patched in versions 1.0.4, 1.1.3 and 1.2.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. It is patched in versions 1.0.4, 1.1.3 and 1.2.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-11020</guid>
    </item>
    <item>
      <title>GHSA-qpg4-4w7w-2mq5 — Authentication and extension bypass in Faye</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qpg4-4w7w-2mq5</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: faye&lt;/p&gt;
&lt;p&gt;On 20 April 2020 it was reported to me that the potential for authentication bypass exists in [Faye][1]&amp;#39;s extension system. This vulnerability has existed in the Node.js and Ruby versions of the server since version 0.5.0, when extensions were first introduced, in July 2010. It is patched in versions 1.0.4, 1.1.3 and 1.2.5, which we are releasing today.&lt;/p&gt;
&lt;p&gt;The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. For example, the Faye [extension docs][2] suggest that users implement access control for subscriptions by checking incoming messages for the `/meta/subscribe` channel, for example:&lt;/p&gt;
&lt;p&gt;```js
server.addExtension({
  incoming: function(message, callback) {
    if (message.channel === &amp;#39;/meta/subscribe&amp;#39;) {
      if (message.ext.authToken !== &amp;#39;my super secret password&amp;#39;) {
        message.error = &amp;#39;Invalid auth token&amp;#39;;
      }
    }
    callback(message);
  }
});
```&lt;/p&gt;
&lt;p&gt;A bug in the server&amp;#39;s code for recognising the special `/meta/*` channels, which trigger connection and subscription events, means that a client can bypass this check by sending a message to `/meta/subscribe/x` rather than `/meta/subscribe`:&lt;/p&gt;
&lt;p&gt;```json
{
  &amp;#34;channel&amp;#34;: &amp;#34;/meta/subscribe/x&amp;#34;,
  &amp;#34;clientId&amp;#34;: &amp;#34;3jrc6602npj4gyp6bn5ap2wqzjtb2q3&amp;#34;,
  &amp;#34;subscription&amp;#34;: &amp;#34;/foo&amp;#34;
}
```&lt;/p&gt;
&lt;p&gt;This message will not be checked by the above extension, as it checks the message&amp;#39;s channel is exactly equal to `/meta/subscribe`. But it will still be processed as…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: faye&lt;/p&gt;
&lt;p&gt;On 20 April 2020 it was reported to me that the potential for authentication bypass exists in [Faye][1]&amp;#39;s extension system. This vulnerability has existed in the Node.js and Ruby versions of the server since version 0.5.0, when extensions were first introduced, in July 2010. It is patched in versions 1.0.4, 1.1.3 and 1.2.5, which we are releasing today.&lt;/p&gt;
&lt;p&gt;The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. For example, the Faye [extension docs][2] suggest that users implement access control for subscriptions by checking incoming messages for the `/meta/subscribe` channel, for example:&lt;/p&gt;
&lt;p&gt;```js
server.addExtension({
  incoming: function(message, callback) {
    if (message.channel === &amp;#39;/meta/subscribe&amp;#39;) {
      if (message.ext.authToken !== &amp;#39;my super secret password&amp;#39;) {
        message.error = &amp;#39;Invalid auth token&amp;#39;;
      }
    }
    callback(message);
  }
});
```&lt;/p&gt;
&lt;p&gt;A bug in the server&amp;#39;s code for recognising the special `/meta/*` channels, which trigger connection and subscription events, means that a client can bypass this check by sending a message to `/meta/subscribe/x` rather than `/meta/subscribe`:&lt;/p&gt;
&lt;p&gt;```json
{
  &amp;#34;channel&amp;#34;: &amp;#34;/meta/subscribe/x&amp;#34;,
  &amp;#34;clientId&amp;#34;: &amp;#34;3jrc6602npj4gyp6bn5ap2wqzjtb2q3&amp;#34;,
  &amp;#34;subscription&amp;#34;: &amp;#34;/foo&amp;#34;
}
```&lt;/p&gt;
&lt;p&gt;This message will not be checked by the above extension, as it checks the message&amp;#39;s channel is exactly equal to `/meta/subscribe`. But it will still be processed as…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qpg4-4w7w-2mq5</guid>
    </item>
    <item>
      <title>gsd-2020-11020</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-11020</link>
      <description>gsd-2020-11020</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-11020</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-11020</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11020</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: ruby-faye, Ubuntu:22.04:LTS: ruby-faye, Ubuntu:24.04:LTS: ruby-faye&lt;/p&gt;
&lt;p&gt;Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. It is patched in versions 1.0.4, 1.1.3 and 1.2.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: ruby-faye, Ubuntu:22.04:LTS: ruby-faye, Ubuntu:24.04:LTS: ruby-faye&lt;/p&gt;
&lt;p&gt;Faye (NPM, RubyGem) versions greater than 0.5.0 and before 1.0.4, 1.1.3 and 1.2.5, has the potential for authentication bypass in the extension system. The vulnerability allows any client to bypass checks put in place by server-side extensions, by appending extra segments to the message channel. It is patched in versions 1.0.4, 1.1.3 and 1.2.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11020</guid>
    </item>
  </channel>
</rss>
