<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 19:54:03 +0000</lastBuildDate>
    <item>
      <title>cnvd-2025-17932</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-17932</link>
      <description>cnvd-2025-17932</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-17932</guid>
    </item>
    <item>
      <title>EUVD-2026-248946</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-248946</link>
      <description>EUVD-2026-248946</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-248946</guid>
    </item>
    <item>
      <title>fkie_cve-2025-54424</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-54424</link>
      <description>&lt;p&gt;1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server. In versions 2.0.5 and below, the HTTPS protocol used for communication between the Core and Agent endpoints has incomplete certificate verification during certificate validation, leading to unauthorized interface access. Due to the presence of numerous command execution or high-privilege interfaces in 1Panel, this results in Remote Code Execution (RCE). This is fixed in version 2.0.6. The CVE has been translated from Simplified Chinese using GitHub Copilot.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;1Panel is a web interface and MCP Server that manages websites, files, containers, databases, and LLMs on a Linux server. In versions 2.0.5 and below, the HTTPS protocol used for communication between the Core and Agent endpoints has incomplete certificate verification during certificate validation, leading to unauthorized interface access. Due to the presence of numerous command execution or high-privilege interfaces in 1Panel, this results in Remote Code Execution (RCE). This is fixed in version 2.0.6. The CVE has been translated from Simplified Chinese using GitHub Copilot.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-54424</guid>
    </item>
    <item>
      <title>GHSA-8j63-96wh-wh3j — 1Panel agent certificate verification bypass leading to arbitrary command execution</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8j63-96wh-wh3j</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/1Panel-dev/1Panel/core&lt;/p&gt;
&lt;p&gt;### Project Address: Project Address [1Panel](https://github.com/1Panel-dev/1Panel)
### Official website: https://www.1panel.cn/
### Time: 2025 07 26
### Version: 1panel V2.0.5
### Vulnerability Summary
 - First, we introduce the concepts of 1panel v2 Core and Agent. After the new version is released, 1panel adds the node management function, which allows you to control other hosts by adding nodes.
 - The HTTPS protocol used for communication between the Core and Agent sides did not fully verify the authenticity of the certificate during certificate verification, resulting in unauthorized interfaces. The presence of a large number of command execution or high-privilege interfaces in the 1panel led to RCE.&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/ebd0b388-d6c0-4678-98ee-47646e69ebe9)&lt;/p&gt;
&lt;p&gt;### Code audit process&lt;/p&gt;
&lt;p&gt;1. First we go to the Agent HTTP routing fileagent/init/router/router.go&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/dd9152a9-6677-4674-b75f-3b67dcedb321)&lt;/p&gt;
&lt;p&gt;2. It was found that the Routersreference function in the function Certificatewas globally checked.agent/middleware/certificate.go&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/5585f251-61e0-4603-8e9e-f50465f265ae)&lt;/p&gt;
&lt;p&gt;3. The discovery Certificatefunction determines c.Request.TLS.HandshakeCompletewhether certificate communication has been performed&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/5a50bdec-cc4d-4439-9b7b-98991ca4ff9c)&lt;/p&gt;
&lt;p&gt;4. Since c.Request.TLS.HandshakeCompletethe true or false judgment is determ…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/1Panel-dev/1Panel/core&lt;/p&gt;
&lt;p&gt;### Project Address: Project Address [1Panel](https://github.com/1Panel-dev/1Panel)
### Official website: https://www.1panel.cn/
### Time: 2025 07 26
### Version: 1panel V2.0.5
### Vulnerability Summary
 - First, we introduce the concepts of 1panel v2 Core and Agent. After the new version is released, 1panel adds the node management function, which allows you to control other hosts by adding nodes.
 - The HTTPS protocol used for communication between the Core and Agent sides did not fully verify the authenticity of the certificate during certificate verification, resulting in unauthorized interfaces. The presence of a large number of command execution or high-privilege interfaces in the 1panel led to RCE.&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/ebd0b388-d6c0-4678-98ee-47646e69ebe9)&lt;/p&gt;
&lt;p&gt;### Code audit process&lt;/p&gt;
&lt;p&gt;1. First we go to the Agent HTTP routing fileagent/init/router/router.go&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/dd9152a9-6677-4674-b75f-3b67dcedb321)&lt;/p&gt;
&lt;p&gt;2. It was found that the Routersreference function in the function Certificatewas globally checked.agent/middleware/certificate.go&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/5585f251-61e0-4603-8e9e-f50465f265ae)&lt;/p&gt;
&lt;p&gt;3. The discovery Certificatefunction determines c.Request.TLS.HandshakeCompletewhether certificate communication has been performed&lt;/p&gt;
&lt;p&gt;![](https://github.com/user-attachments/assets/5a50bdec-cc4d-4439-9b7b-98991ca4ff9c)&lt;/p&gt;
&lt;p&gt;4. Since c.Request.TLS.HandshakeCompletethe true or false judgment is determ…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8j63-96wh-wh3j</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15434-1 — govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15434-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250811T192933-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15434-1</guid>
    </item>
  </channel>
</rss>
