<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:41:32 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-330272</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-330272</link>
      <description>EUVD-2026-330272</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-330272</guid>
    </item>
    <item>
      <title>fkie_cve-2026-52815</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-52815</link>
      <description>&lt;p&gt;Gogs is an open source self-hosted Git service. Prior to 0.14.3, Gogs has an unauthenticated information disclosure vulnerability. The GET /api/v1/orgs/:orgname/teams endpoint at internal/route/api/v1/org_team.go:8 returns all teams for any organization without requiring authentication. The route group at internal/route/api/v1/api.go:380-385 lacks the reqToken() middleware, and the listTeams() handler performs no authentication check, exposing team IDs, names, descriptions, and permission levels to any unauthenticated caller. This vulnerability is fixed in 0.14.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Gogs is an open source self-hosted Git service. Prior to 0.14.3, Gogs has an unauthenticated information disclosure vulnerability. The GET /api/v1/orgs/:orgname/teams endpoint at internal/route/api/v1/org_team.go:8 returns all teams for any organization without requiring authentication. The route group at internal/route/api/v1/api.go:380-385 lacks the reqToken() middleware, and the listTeams() handler performs no authentication check, exposing team IDs, names, descriptions, and permission levels to any unauthenticated caller. This vulnerability is fixed in 0.14.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-52815</guid>
    </item>
    <item>
      <title>GHSA-744x-3838-5r56 — Gogs Vulnerable to Unauthenticated Organization Teams Information Disclosure via API</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-744x-3838-5r56</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: gogs.io/gogs&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;Gogs has an unauthenticated information disclosure vulnerability. The `GET /api/v1/orgs/:orgname/teams` endpoint at `internal/route/api/v1/org_team.go:8` returns all teams for any organization without requiring authentication. The route group at `internal/route/api/v1/api.go:380-385` lacks the `reqToken()` middleware, and the `listTeams()` handler performs no authentication check, exposing team IDs, names, descriptions, and permission levels to any unauthenticated caller.&lt;/p&gt;
&lt;p&gt;## Affected Versions&lt;/p&gt;
&lt;p&gt;Gogs (all current versions)&lt;/p&gt;
&lt;p&gt;## Vulnerability Details&lt;/p&gt;
&lt;p&gt;### Root Cause: Missing reqToken() middleware on org teams route group&lt;/p&gt;
&lt;p&gt;`internal/route/api/v1/api.go` lines 380-385:&lt;/p&gt;
&lt;p&gt;```go
// Org teams route group — no reqToken() middleware
m.Group(&amp;#34;/:orgname&amp;#34;, func() {
    m.Get(&amp;#34;/teams&amp;#34;, org.ListTeams) // No auth required
}, orgAssignment(true))
```&lt;/p&gt;
&lt;p&gt;The `orgAssignment(true)` middleware only loads the organization object — it performs no authentication. The `listTeams()` handler at `org_team.go:8` returns all teams unconditionally:&lt;/p&gt;
&lt;p&gt;```go
func ListTeams(c *context.APIContext) {
    org := c.Org.Organization
    teams, err := database.GetTeamsByOrgID(org.ID)
    // Returns all teams — no c.IsLogged check, no permission check
}
```&lt;/p&gt;
&lt;p&gt;Compare with other org endpoints that correctly require authentication:&lt;/p&gt;
&lt;p&gt;```go
m.Group(&amp;#34;/orgs/:orgname&amp;#34;, func() {
    // ... other endpoints ...
}, reqToken(), orgAssignment(true, true)) // reqToken() enforces auth
```&lt;/p&gt;
&lt;p&gt;### Attack Chain&lt;/p&gt;
&lt;p&gt;- Attacker send…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: gogs.io/gogs&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;Gogs has an unauthenticated information disclosure vulnerability. The `GET /api/v1/orgs/:orgname/teams` endpoint at `internal/route/api/v1/org_team.go:8` returns all teams for any organization without requiring authentication. The route group at `internal/route/api/v1/api.go:380-385` lacks the `reqToken()` middleware, and the `listTeams()` handler performs no authentication check, exposing team IDs, names, descriptions, and permission levels to any unauthenticated caller.&lt;/p&gt;
&lt;p&gt;## Affected Versions&lt;/p&gt;
&lt;p&gt;Gogs (all current versions)&lt;/p&gt;
&lt;p&gt;## Vulnerability Details&lt;/p&gt;
&lt;p&gt;### Root Cause: Missing reqToken() middleware on org teams route group&lt;/p&gt;
&lt;p&gt;`internal/route/api/v1/api.go` lines 380-385:&lt;/p&gt;
&lt;p&gt;```go
// Org teams route group — no reqToken() middleware
m.Group(&amp;#34;/:orgname&amp;#34;, func() {
    m.Get(&amp;#34;/teams&amp;#34;, org.ListTeams) // No auth required
}, orgAssignment(true))
```&lt;/p&gt;
&lt;p&gt;The `orgAssignment(true)` middleware only loads the organization object — it performs no authentication. The `listTeams()` handler at `org_team.go:8` returns all teams unconditionally:&lt;/p&gt;
&lt;p&gt;```go
func ListTeams(c *context.APIContext) {
    org := c.Org.Organization
    teams, err := database.GetTeamsByOrgID(org.ID)
    // Returns all teams — no c.IsLogged check, no permission check
}
```&lt;/p&gt;
&lt;p&gt;Compare with other org endpoints that correctly require authentication:&lt;/p&gt;
&lt;p&gt;```go
m.Group(&amp;#34;/orgs/:orgname&amp;#34;, func() {
    // ... other endpoints ...
}, reqToken(), orgAssignment(true, true)) // reqToken() enforces auth
```&lt;/p&gt;
&lt;p&gt;### Attack Chain&lt;/p&gt;
&lt;p&gt;- Attacker send…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-744x-3838-5r56</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2013 — Gogs: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2013</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Gogs ausnutzen, um erweiterte Berechtigungen zu erlangen, beliebigen Code auszuführen – sogar mit erweiterten Berechtigungen, was zur vollständigen Kontrolle über das System führen kann –, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, Cross-Site-Scripting-Angriffe durchzuführen, Benutzer auf bösartige Websites umzuleiten oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Gogs ausnutzen, um erweiterte Berechtigungen zu erlangen, beliebigen Code auszuführen – sogar mit erweiterten Berechtigungen, was zur vollständigen Kontrolle über das System führen kann –, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, Cross-Site-Scripting-Angriffe durchzuführen, Benutzer auf bösartige Websites umzuleiten oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2013</guid>
    </item>
  </channel>
</rss>
