<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 14:36:40 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-5431</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-5431</link>
      <description>EUVD-2026-5431</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-5431</guid>
    </item>
    <item>
      <title>fkie_cve-2024-34065</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-34065</link>
      <description>&lt;p&gt;Strapi is an open-source content management system. By combining two vulnerabilities (an `Open Redirect` and `session token sent as URL query parameter`) in @strapi/plugin-users-permissions before version 4.24.2, is its possible of an unauthenticated attacker to bypass authentication mechanisms and retrieve the 3rd party tokens. The attack requires user interaction (one click). Unauthenticated attackers can leverage two vulnerabilities to obtain an 3rd party token and the bypass authentication of Strapi apps. Users should upgrade @strapi/plugin-users-permissions to version 4.24.2 to receive a patch.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Strapi is an open-source content management system. By combining two vulnerabilities (an `Open Redirect` and `session token sent as URL query parameter`) in @strapi/plugin-users-permissions before version 4.24.2, is its possible of an unauthenticated attacker to bypass authentication mechanisms and retrieve the 3rd party tokens. The attack requires user interaction (one click). Unauthenticated attackers can leverage two vulnerabilities to obtain an 3rd party token and the bypass authentication of Strapi apps. Users should upgrade @strapi/plugin-users-permissions to version 4.24.2 to receive a patch.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-34065</guid>
    </item>
    <item>
      <title>GHSA-wrvh-rcmr-9qfc — @strapi/plugin-users-permissions leaks 3rd party authentication tokens and authentication bypass</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wrvh-rcmr-9qfc</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @strapi/plugin-users-permissions&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;By combining two vulnerabilities (an `Open Redirect` and `session token sent as URL query parameter`) in Strapi framework is its possible of an unauthenticated attacker to bypass authentication mechanisms and retrieve the 3rd party tokens. The attack requires user interaction (one click).&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Unauthenticated attackers can leverage two vulnerabilities to obtain an 3rd party token and the bypass authentication of Strapi apps.&lt;/p&gt;
&lt;p&gt;### Technical details&lt;/p&gt;
&lt;p&gt;#### Vulnerability 1: Open Redirect&lt;/p&gt;
&lt;p&gt;##### Description&lt;/p&gt;
&lt;p&gt;Open redirection vulnerabilities arise when an application incorporates user-controllable data into the target of a redirection in an unsafe way. An attacker can construct a URL within the application that causes a redirection to an arbitrary external domain.&lt;/p&gt;
&lt;p&gt;In the specific context of Strapi, this vulnerability allows the SSO token to be stolen, allowing an attacker to authenticate himself within the application.&lt;/p&gt;
&lt;p&gt;##### Remediation&lt;/p&gt;
&lt;p&gt;If possible, applications should avoid incorporating user-controllable data into redirection targets. In many cases, this behavior can be avoided in two ways:&lt;/p&gt;
&lt;p&gt;- Remove the redirection function from the application, and replace links to it with direct links to the relevant target URLs.
- Maintain a server-side list of all URLs that are permitted for redirection. Instead of passing the target URL as a parameter to the redirector, pass an index into this list.&lt;/p&gt;
&lt;p&gt;If it is considered unavoidable for the redirection function to re…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @strapi/plugin-users-permissions&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;By combining two vulnerabilities (an `Open Redirect` and `session token sent as URL query parameter`) in Strapi framework is its possible of an unauthenticated attacker to bypass authentication mechanisms and retrieve the 3rd party tokens. The attack requires user interaction (one click).&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Unauthenticated attackers can leverage two vulnerabilities to obtain an 3rd party token and the bypass authentication of Strapi apps.&lt;/p&gt;
&lt;p&gt;### Technical details&lt;/p&gt;
&lt;p&gt;#### Vulnerability 1: Open Redirect&lt;/p&gt;
&lt;p&gt;##### Description&lt;/p&gt;
&lt;p&gt;Open redirection vulnerabilities arise when an application incorporates user-controllable data into the target of a redirection in an unsafe way. An attacker can construct a URL within the application that causes a redirection to an arbitrary external domain.&lt;/p&gt;
&lt;p&gt;In the specific context of Strapi, this vulnerability allows the SSO token to be stolen, allowing an attacker to authenticate himself within the application.&lt;/p&gt;
&lt;p&gt;##### Remediation&lt;/p&gt;
&lt;p&gt;If possible, applications should avoid incorporating user-controllable data into redirection targets. In many cases, this behavior can be avoided in two ways:&lt;/p&gt;
&lt;p&gt;- Remove the redirection function from the application, and replace links to it with direct links to the relevant target URLs.
- Maintain a server-side list of all URLs that are permitted for redirection. Instead of passing the target URL as a parameter to the redirector, pass an index into this list.&lt;/p&gt;
&lt;p&gt;If it is considered unavoidable for the redirection function to re…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wrvh-rcmr-9qfc</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1455 — Strapi: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1455</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Strapi ausnutzen, um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Strapi ausnutzen, um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1455</guid>
    </item>
  </channel>
</rss>
