<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 18:19:42 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-104201</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-104201</link>
      <description>EUVD-2026-104201</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-104201</guid>
    </item>
    <item>
      <title>fkie_cve-2024-24765</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-24765</link>
      <description>&lt;p&gt;CasaOS-UserService provides user management functionalities to CasaOS. Prior to version 0.4.7, path filtering of the URL for user avatar image files was not strict, making it possible to get any file on the system. This could allow an unauthorized actor to access, for example, the CasaOS user database, and possibly obtain system root privileges. Version 0.4.7 fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CasaOS-UserService provides user management functionalities to CasaOS. Prior to version 0.4.7, path filtering of the URL for user avatar image files was not strict, making it possible to get any file on the system. This could allow an unauthorized actor to access, for example, the CasaOS user database, and possibly obtain system root privileges. Version 0.4.7 fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-24765</guid>
    </item>
    <item>
      <title>GHSA-h5gf-cmm8-cg7c — CasaOS-UserService allows unauthorized access to any file</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h5gf-cmm8-cg7c</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/IceWhaleTech/CasaOS-UserService&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;http://demo.casaos.io/v1/users/image?path=/var/lib/casaos/1/avatar.png&lt;/p&gt;
&lt;p&gt;Originally it was to get the url of the user&amp;#39;s avatar, but the path filtering was not strict, making it possible to get any file on the system.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;Construct paths to get any file.&lt;/p&gt;
&lt;p&gt;Such as the CasaOS user database, and furthermore can obtain system root privileges.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;http://demo.casaos.io/v1/users/image?path=/var/lib/casaos/conf/../db/user.db&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;v0.4.6 all previous versions&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/IceWhaleTech/CasaOS-UserService&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;http://demo.casaos.io/v1/users/image?path=/var/lib/casaos/1/avatar.png&lt;/p&gt;
&lt;p&gt;Originally it was to get the url of the user&amp;#39;s avatar, but the path filtering was not strict, making it possible to get any file on the system.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;Construct paths to get any file.&lt;/p&gt;
&lt;p&gt;Such as the CasaOS user database, and furthermore can obtain system root privileges.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;http://demo.casaos.io/v1/users/image?path=/var/lib/casaos/conf/../db/user.db&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;v0.4.6 all previous versions&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h5gf-cmm8-cg7c</guid>
    </item>
    <item>
      <title>gsd-2024-24765</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-24765</link>
      <description>gsd-2024-24765</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-24765</guid>
    </item>
  </channel>
</rss>
