<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 19:20:19 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-338210</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-338210</link>
      <description>EUVD-2026-338210</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-338210</guid>
    </item>
    <item>
      <title>fkie_cve-2026-46339</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-46339</link>
      <description>&lt;p&gt;9Router is an AI router &amp;amp; token saver. From 0.4.30 until 0.4.37, 9Router&amp;#39;s src/proxy.js middleware did not protect /api/cli-tools/* and /api/mcp/*, allowing unauthenticated registration of customPlugins through src/app/api/cli-tools/cowork-settings/route.js and command execution through the MCP bridge. This vulnerability is fixed in 0.4.37.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;9Router is an AI router &amp;amp; token saver. From 0.4.30 until 0.4.37, 9Router&amp;#39;s src/proxy.js middleware did not protect /api/cli-tools/* and /api/mcp/*, allowing unauthenticated registration of customPlugins through src/app/api/cli-tools/cowork-settings/route.js and command execution through the MCP bridge. This vulnerability is fixed in 0.4.37.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-46339</guid>
    </item>
    <item>
      <title>GHSA-fhh6-4qxv-rpqj — 9router: Unauthenticated Remote Code Execution via unprotected MCP custom plugin routes</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fhh6-4qxv-rpqj</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: 9router&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;9router exposes two unauthenticated API endpoints that, when chained together, allow any network-adjacent attacker to execute arbitrary OS commands as the user running the 9router process — with **zero prerequisites** and **no credentials required**.&lt;/p&gt;
&lt;p&gt;The vulnerability exists because the Next.js middleware that enforces authentication (`src/proxy.js`) only guards 8 explicitly listed routes. The attack surface of `/api/cli-tools/*` and `/api/mcp/*` (40+ routes) receives **no authentication whatsoever**.&lt;/p&gt;
&lt;p&gt;---&lt;/p&gt;
&lt;p&gt;## Root Cause&lt;/p&gt;
&lt;p&gt;### 1. Middleware Allowlist Is Too Narrow&lt;/p&gt;
&lt;p&gt;**File:** `src/proxy.js`&lt;/p&gt;
&lt;p&gt;```js
export const config = {
  matcher: [
    &amp;#34;/&amp;#34;,
    &amp;#34;/dashboard/:path*&amp;#34;,
    &amp;#34;/api/shutdown&amp;#34;,
    &amp;#34;/api/settings/:path*&amp;#34;,
    &amp;#34;/api/keys&amp;#34;,
    &amp;#34;/api/keys/:path*&amp;#34;,
    &amp;#34;/api/providers/client&amp;#34;,
    &amp;#34;/api/provider-nodes/validate&amp;#34;,
  ],
};
```&lt;/p&gt;
&lt;p&gt;Next.js middleware only runs on routes matching this list. Routes NOT listed — including `/api/cli-tools/*` and `/api/mcp/*` — bypass the `dashboardGuard` auth check entirely.&lt;/p&gt;
&lt;p&gt;### 2. Unguarded Endpoint Accepts Arbitrary Command Registration&lt;/p&gt;
&lt;p&gt;**File:** `src/app/api/cli-tools/cowork-settings/route.js`, lines 292–319&lt;/p&gt;
&lt;p&gt;```js
export async function POST(request) {
  const { baseUrl, apiKey, models, plugins, localPlugins, customPlugins } = await request.json();
  // ...
  const customPluginsArray = Array.isArray(customPlugins) ? customPlugins : [];&lt;/p&gt;
&lt;p&gt;if (customPluginsArray.length &amp;gt; 0) {
    const { registerCustomPlugin } = require(&amp;#34;@/lib/mcp…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: 9router&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;9router exposes two unauthenticated API endpoints that, when chained together, allow any network-adjacent attacker to execute arbitrary OS commands as the user running the 9router process — with **zero prerequisites** and **no credentials required**.&lt;/p&gt;
&lt;p&gt;The vulnerability exists because the Next.js middleware that enforces authentication (`src/proxy.js`) only guards 8 explicitly listed routes. The attack surface of `/api/cli-tools/*` and `/api/mcp/*` (40+ routes) receives **no authentication whatsoever**.&lt;/p&gt;
&lt;p&gt;---&lt;/p&gt;
&lt;p&gt;## Root Cause&lt;/p&gt;
&lt;p&gt;### 1. Middleware Allowlist Is Too Narrow&lt;/p&gt;
&lt;p&gt;**File:** `src/proxy.js`&lt;/p&gt;
&lt;p&gt;```js
export const config = {
  matcher: [
    &amp;#34;/&amp;#34;,
    &amp;#34;/dashboard/:path*&amp;#34;,
    &amp;#34;/api/shutdown&amp;#34;,
    &amp;#34;/api/settings/:path*&amp;#34;,
    &amp;#34;/api/keys&amp;#34;,
    &amp;#34;/api/keys/:path*&amp;#34;,
    &amp;#34;/api/providers/client&amp;#34;,
    &amp;#34;/api/provider-nodes/validate&amp;#34;,
  ],
};
```&lt;/p&gt;
&lt;p&gt;Next.js middleware only runs on routes matching this list. Routes NOT listed — including `/api/cli-tools/*` and `/api/mcp/*` — bypass the `dashboardGuard` auth check entirely.&lt;/p&gt;
&lt;p&gt;### 2. Unguarded Endpoint Accepts Arbitrary Command Registration&lt;/p&gt;
&lt;p&gt;**File:** `src/app/api/cli-tools/cowork-settings/route.js`, lines 292–319&lt;/p&gt;
&lt;p&gt;```js
export async function POST(request) {
  const { baseUrl, apiKey, models, plugins, localPlugins, customPlugins } = await request.json();
  // ...
  const customPluginsArray = Array.isArray(customPlugins) ? customPlugins : [];&lt;/p&gt;
&lt;p&gt;if (customPluginsArray.length &amp;gt; 0) {
    const { registerCustomPlugin } = require(&amp;#34;@/lib/mcp…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fhh6-4qxv-rpqj</guid>
    </item>
  </channel>
</rss>
