<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 13:36:34 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-242248</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-242248</link>
      <description>EUVD-2026-242248</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-242248</guid>
    </item>
    <item>
      <title>fkie_cve-2025-48948</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-48948</link>
      <description>&lt;p&gt;Navidrome is an open source web-based music collection server and streamer. A permission verification flaw in versions prior to 0.56.0 allows any authenticated regular user to bypass authorization checks and perform administrator-only transcoding configuration operations, including creating, modifying, and deleting transcoding settings. In the threat model where administrators are trusted but regular users are not, this vulnerability represents a significant security risk when transcoding is enabled. Version 0.56.0 patches the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Navidrome is an open source web-based music collection server and streamer. A permission verification flaw in versions prior to 0.56.0 allows any authenticated regular user to bypass authorization checks and perform administrator-only transcoding configuration operations, including creating, modifying, and deleting transcoding settings. In the threat model where administrators are trusted but regular users are not, this vulnerability represents a significant security risk when transcoding is enabled. Version 0.56.0 patches the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-48948</guid>
    </item>
    <item>
      <title>GHSA-f238-rggp-82m3 — Navidrome Transcoding Permission Bypass Vulnerability Report</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f238-rggp-82m3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/navidrome/navidrome&lt;/p&gt;
&lt;p&gt;### Summary
A permission verification flaw in Navidrome allows any authenticated regular user to bypass authorization checks and perform administrator-only transcoding configuration operations, including creating, modifying, and deleting transcoding settings.&lt;/p&gt;
&lt;p&gt;### Details
Navidrome supports transcoding functionality which, although disabled by default, should restrict configuration operations to administrators only. However, the application fails to properly validate whether a user has administrative privileges when handling transcoding configuration requests.&lt;/p&gt;
&lt;p&gt;The vulnerability exists in the API endpoints that manage transcoding settings. When a regular user sends requests to these endpoints, the application processes them without verifying if the user has administrative privileges, despite the JWT token clearly indicating the user is not an administrator (`&amp;#34;adm&amp;#34;:false`).&lt;/p&gt;
&lt;p&gt;The affected endpoints include:
- `POST /api/transcoding` (Create transcoding configuration)
- `PUT /api/transcoding/:id` (Update transcoding configuration)
- `DELETE /api/transcoding/:id` (Delete transcoding configuration)
- `GET /api/transcoding` (List transcoding configurations)&lt;/p&gt;
&lt;p&gt;### PoC
1. Set up Navidrome with transcoding enabled
2. Log in as a regular user (non-administrator)
3. Send the following HTTP request:&lt;/p&gt;
&lt;p&gt;```
POST /api/transcoding HTTP/1.1
Host: 192.168.199.134:4533
Content-Length: 81
x-nd-client-unique-id: e559d130-4295-401e-b65f-be7fdd564e
accept: application/json
x-nd-authorization: Bearer…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/navidrome/navidrome&lt;/p&gt;
&lt;p&gt;### Summary
A permission verification flaw in Navidrome allows any authenticated regular user to bypass authorization checks and perform administrator-only transcoding configuration operations, including creating, modifying, and deleting transcoding settings.&lt;/p&gt;
&lt;p&gt;### Details
Navidrome supports transcoding functionality which, although disabled by default, should restrict configuration operations to administrators only. However, the application fails to properly validate whether a user has administrative privileges when handling transcoding configuration requests.&lt;/p&gt;
&lt;p&gt;The vulnerability exists in the API endpoints that manage transcoding settings. When a regular user sends requests to these endpoints, the application processes them without verifying if the user has administrative privileges, despite the JWT token clearly indicating the user is not an administrator (`&amp;#34;adm&amp;#34;:false`).&lt;/p&gt;
&lt;p&gt;The affected endpoints include:
- `POST /api/transcoding` (Create transcoding configuration)
- `PUT /api/transcoding/:id` (Update transcoding configuration)
- `DELETE /api/transcoding/:id` (Delete transcoding configuration)
- `GET /api/transcoding` (List transcoding configurations)&lt;/p&gt;
&lt;p&gt;### PoC
1. Set up Navidrome with transcoding enabled
2. Log in as a regular user (non-administrator)
3. Send the following HTTP request:&lt;/p&gt;
&lt;p&gt;```
POST /api/transcoding HTTP/1.1
Host: 192.168.199.134:4533
Content-Length: 81
x-nd-client-unique-id: e559d130-4295-401e-b65f-be7fdd564e
accept: application/json
x-nd-authorization: Bearer…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f238-rggp-82m3</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15225-1 — govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15225-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250612T141001-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15225-1</guid>
    </item>
  </channel>
</rss>
