<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 00:23:43 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-352520</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-352520</link>
      <description>EUVD-2026-352520</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-352520</guid>
    </item>
    <item>
      <title>fkie_cve-2026-73654</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-73654</link>
      <description>&lt;p&gt;Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. From 3.3.8 until 4.5.6, the PUT /api/v1/runs/:runId/metadata endpoint passes attacker-controlled operation.key values to new JSONHeroPath(operation.key).set(newMetadata, value) in packages/core/src/v3/runMetadata/operations.ts without rejecting dangerous constructor and prototype path segments. A caller with a normal environment API key can pollute Object.prototype in the shared webapp process, corrupting Prisma queries and Prometheus labels, breaking other tenants&amp;#39; worker authentication, and causing a process-wide denial of service. This issue is fixed in version 4.5.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. From 3.3.8 until 4.5.6, the PUT /api/v1/runs/:runId/metadata endpoint passes attacker-controlled operation.key values to new JSONHeroPath(operation.key).set(newMetadata, value) in packages/core/src/v3/runMetadata/operations.ts without rejecting dangerous constructor and prototype path segments. A caller with a normal environment API key can pollute Object.prototype in the shared webapp process, corrupting Prisma queries and Prometheus labels, breaking other tenants&amp;#39; worker authentication, and causing a process-wide denial of service. This issue is fixed in version 4.5.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-73654</guid>
    </item>
    <item>
      <title>GHSA-p28v-f755-9qrg — Trigger.dev: Prototype pollution via run metadata operations → process-wide cross-tenant DoS</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-p28v-f755-9qrg</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @trigger.dev/core&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The run-metadata update endpoint `PUT /api/v1/runs/:runId/metadata` applies client-supplied
&amp;#34;operations&amp;#34; by passing the **attacker-controlled `operation.key`** straight into
`new JSONHeroPath(operation.key).set(newMetadata, value)`
(`packages/core/src/v3/runMetadata/operations.ts:22-23`), with **no prototype-pollution guard**
(`@jsonhero/path@^1.0.21` does not reject `__proto__`/`constructor`/`prototype`).&lt;/p&gt;
&lt;p&gt;A request with `key: &amp;#34;$.__proto__.polluted&amp;#34;` sets **`Object.prototype.polluted`** in the webapp
process. Because every plain object then inherits that property, it corrupts unrelated code
**process-wide and across tenants** — including Prisma query building and the Prometheus metrics
client — causing query failures, **broken authentication for other tenants&amp;#39; workers**, and an
`uncaughtException` (denial of service). Only a normal, low-privilege environment API key is
required (one request).&lt;/p&gt;
&lt;p&gt;## Severity&lt;/p&gt;
&lt;p&gt;A single request from any holder of a normal environment API key contaminates `Object.prototype`
in the shared webapp process, breaking other tenants&amp;#39; workers (scope change) and degrading/
crashing the process (high availability impact). Prototype pollution is also a primitive for
further gadget chains (integrity/confidentiality).&lt;/p&gt;
&lt;p&gt;## Affected versions&lt;/p&gt;
&lt;p&gt;- **Introduced** in commit `34f8bd588` (&amp;#34;Add ability to update parent and root run metadata from
  children&amp;#34;, PR #1563, 2025-01-08) — the `JSONHeroPath(operation.key).set()` sink is present from
  the first com…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @trigger.dev/core&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;The run-metadata update endpoint `PUT /api/v1/runs/:runId/metadata` applies client-supplied
&amp;#34;operations&amp;#34; by passing the **attacker-controlled `operation.key`** straight into
`new JSONHeroPath(operation.key).set(newMetadata, value)`
(`packages/core/src/v3/runMetadata/operations.ts:22-23`), with **no prototype-pollution guard**
(`@jsonhero/path@^1.0.21` does not reject `__proto__`/`constructor`/`prototype`).&lt;/p&gt;
&lt;p&gt;A request with `key: &amp;#34;$.__proto__.polluted&amp;#34;` sets **`Object.prototype.polluted`** in the webapp
process. Because every plain object then inherits that property, it corrupts unrelated code
**process-wide and across tenants** — including Prisma query building and the Prometheus metrics
client — causing query failures, **broken authentication for other tenants&amp;#39; workers**, and an
`uncaughtException` (denial of service). Only a normal, low-privilege environment API key is
required (one request).&lt;/p&gt;
&lt;p&gt;## Severity&lt;/p&gt;
&lt;p&gt;A single request from any holder of a normal environment API key contaminates `Object.prototype`
in the shared webapp process, breaking other tenants&amp;#39; workers (scope change) and degrading/
crashing the process (high availability impact). Prototype pollution is also a primitive for
further gadget chains (integrity/confidentiality).&lt;/p&gt;
&lt;p&gt;## Affected versions&lt;/p&gt;
&lt;p&gt;- **Introduced** in commit `34f8bd588` (&amp;#34;Add ability to update parent and root run metadata from
  children&amp;#34;, PR #1563, 2025-01-08) — the `JSONHeroPath(operation.key).set()` sink is present from
  the first com…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-p28v-f755-9qrg</guid>
    </item>
  </channel>
</rss>
