<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 05:25:37 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-160222</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-160222</link>
      <description>EUVD-2026-160222</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-160222</guid>
    </item>
    <item>
      <title>fkie_cve-2024-29887</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-29887</link>
      <description>&lt;p&gt;Serverpod is an app and web server, built for the Flutter and Dart ecosystem. This bug bypassed the validation of TSL certificates on all none web HTTP clients in the `serverpod_client` package. Making them susceptible to a man in the middle attack against encrypted traffic between the client device and the server. An attacker would need to be able to intercept the traffic and highjack the connection to the server for this vulnerability to be used. Upgrading to version `1.2.6` resolves this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Serverpod is an app and web server, built for the Flutter and Dart ecosystem. This bug bypassed the validation of TSL certificates on all none web HTTP clients in the `serverpod_client` package. Making them susceptible to a man in the middle attack against encrypted traffic between the client device and the server. An attacker would need to be able to intercept the traffic and highjack the connection to the server for this vulnerability to be used. Upgrading to version `1.2.6` resolves this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-29887</guid>
    </item>
    <item>
      <title>GHSA-h6x7-r5rg-x5fw — Serverpod client accepts any certificate</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h6x7-r5rg-x5fw</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Pub: serverpod_client&lt;/p&gt;
&lt;p&gt;This bug bypassed the validation of TSL certificates on all none web HTTP clients in the `serverpod_client` package. Making them susceptible to a man in the middle attack against encrypted traffic between the client device and the server.&lt;/p&gt;
&lt;p&gt;An attacker would need to be able to intercept the traffic and highjack the connection to the server for this vulnerability to be used.&lt;/p&gt;
&lt;p&gt;### Impact
All versions of `serverpod_client` pre `1.2.6`&lt;/p&gt;
&lt;p&gt;### Patches
Upgrading to version `1.2.6` resolves this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Pub: serverpod_client&lt;/p&gt;
&lt;p&gt;This bug bypassed the validation of TSL certificates on all none web HTTP clients in the `serverpod_client` package. Making them susceptible to a man in the middle attack against encrypted traffic between the client device and the server.&lt;/p&gt;
&lt;p&gt;An attacker would need to be able to intercept the traffic and highjack the connection to the server for this vulnerability to be used.&lt;/p&gt;
&lt;p&gt;### Impact
All versions of `serverpod_client` pre `1.2.6`&lt;/p&gt;
&lt;p&gt;### Patches
Upgrading to version `1.2.6` resolves this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h6x7-r5rg-x5fw</guid>
    </item>
    <item>
      <title>gsd-2024-29887</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-29887</link>
      <description>gsd-2024-29887</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-29887</guid>
    </item>
  </channel>
</rss>
