home.social

#vulnerability β€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #vulnerability, aggregated by home.social.

  1. 🚨 EUVD-2026-88035

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Affected by this issue is the function SysUser.isAdmin of the file edu-common/src/main/java/com/edu/common/core/domain/entity/SysUser.java of the component authRole ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  2. 🚨 EUVD-2026-88034

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A security flaw has been discovered in zhistaredu StarTraining up to 3.8.1. This affects the function checkRoleAllowed of the file SysRoleServiceImpl.java of the component dataScope Endpoint. The manipulation results in missing authoriz...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  3. 🚨 EUVD-2026-88035

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Affected by this issue is the function SysUser.isAdmin of the file edu-common/src/main/java/com/edu/common/core/domain/entity/SysUser.java of the component authRole ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  4. 🚨 EUVD-2026-88034

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A security flaw has been discovered in zhistaredu StarTraining up to 3.8.1. This affects the function checkRoleAllowed of the file SysRoleServiceImpl.java of the component dataScope Endpoint. The manipulation results in missing authoriz...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  5. 🚨 EUVD-2026-88035

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Affected by this issue is the function SysUser.isAdmin of the file edu-common/src/main/java/com/edu/common/core/domain/entity/SysUser.java of the component authRole ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  6. 🚨 EUVD-2026-88034

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A security flaw has been discovered in zhistaredu StarTraining up to 3.8.1. This affects the function checkRoleAllowed of the file SysRoleServiceImpl.java of the component dataScope Endpoint. The manipulation results in missing authoriz...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  7. 🚨 EUVD-2026-88035

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A vulnerability was identified in zhistaredu StarTraining up to 3.8.1. Affected by this issue is the function SysUser.isAdmin of the file edu-common/src/main/java/com/edu/common/core/domain/entity/SysUser.java of the component authRole ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  8. 🚨 EUVD-2026-88034

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: StarTraining, StarTraining
    🏒 Vendor: zhistaredu
    πŸ“… Updated: 2026-09-27

    πŸ“ A security flaw has been discovered in zhistaredu StarTraining up to 3.8.1. This affects the function checkRoleAllowed of the file SysRoleServiceImpl.java of the component dataScope Endpoint. The manipulation results in missing authoriz...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  9. 🚨 EUVD-2026-88033

    πŸ“Š Score: 8.7/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 (affected versions <= v0.22.1) running with OBOT_SERVER_ENABLE_AUTHENTICATION=true exposes OAuth dynamic client registration without authentication and without any restriction on the redirect URIs a client may register. Because the aut...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  10. 🚨 EUVD-2026-88032

    πŸ“Š Score: 6.9/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot versions before v0.23.0 fail to enforce authentication on MCP Registry endpoints under /v0.1/* when registry authentication is enabled. Unauthenticated attackers can read registry metadata including server names, descriptions, repository URLs, and co...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  11. 🚨 EUVD-2026-88032

    πŸ“Š Score: 6.9/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot versions before v0.23.0 fail to enforce authentication on MCP Registry endpoints under /v0.1/* when registry authentication is enabled. Unauthenticated attackers can read registry metadata including server names, descriptions, repository URLs, and co...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  12. 🚨 EUVD-2026-88033

    πŸ“Š Score: 8.7/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 (affected versions <= v0.22.1) running with OBOT_SERVER_ENABLE_AUTHENTICATION=true exposes OAuth dynamic client registration without authentication and without any restriction on the redirect URIs a client may register. Because the aut...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  13. 🚨 EUVD-2026-88032

    πŸ“Š Score: 6.9/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot versions before v0.23.0 fail to enforce authentication on MCP Registry endpoints under /v0.1/* when registry authentication is enabled. Unauthenticated attackers can read registry metadata including server names, descriptions, repository URLs, and co...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  14. 🚨 EUVD-2026-88033

    πŸ“Š Score: 8.7/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 (affected versions <= v0.22.1) running with OBOT_SERVER_ENABLE_AUTHENTICATION=true exposes OAuth dynamic client registration without authentication and without any restriction on the redirect URIs a client may register. Because the aut...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  15. 🚨 EUVD-2026-88032

    πŸ“Š Score: 6.9/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot versions before v0.23.0 fail to enforce authentication on MCP Registry endpoints under /v0.1/* when registry authentication is enabled. Unauthenticated attackers can read registry metadata including server names, descriptions, repository URLs, and co...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  16. 🚨 EUVD-2026-88033

    πŸ“Š Score: 8.7/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 (affected versions <= v0.22.1) running with OBOT_SERVER_ENABLE_AUTHENTICATION=true exposes OAuth dynamic client registration without authentication and without any restriction on the redirect URIs a client may register. Because the aut...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  17. 🚨 EUVD-2026-88031

    πŸ“Š Score: 8.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  18. 🚨 EUVD-2026-88029

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ obot versions before v0.21.1 fail to enforce Access Control Rules on the /mcp-connect endpoint, allowing any authenticated user to connect to restricted MCP servers if they possess the server ID. Attackers can bypass authorization checks to access and man...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  19. 🚨 EUVD-2026-88031

    πŸ“Š Score: 8.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  20. 🚨 EUVD-2026-88029

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ obot versions before v0.21.1 fail to enforce Access Control Rules on the /mcp-connect endpoint, allowing any authenticated user to connect to restricted MCP servers if they possess the server ID. Attackers can bypass authorization checks to access and man...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  21. 🚨 EUVD-2026-88031

    πŸ“Š Score: 8.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  22. 🚨 EUVD-2026-88029

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ obot versions before v0.21.1 fail to enforce Access Control Rules on the /mcp-connect endpoint, allowing any authenticated user to connect to restricted MCP servers if they possess the server ID. Attackers can bypass authorization checks to access and man...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  23. 🚨 EUVD-2026-88031

    πŸ“Š Score: 8.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot before v0.23.0 contains a server-side request forgery vulnerability in remote MCP server registration that allows privileged users to specify arbitrary URLs without destination validation. Attackers with Power User or higher roles can coerce Obot to ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  24. 🚨 EUVD-2026-88029

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: obot
    🏒 Vendor: obot-platform
    πŸ“… Updated: 2026-09-27

    πŸ“ obot versions before v0.21.1 fail to enforce Access Control Rules on the /mcp-connect endpoint, allowing any authenticated user to connect to restricted MCP servers if they possess the server ID. Attackers can bypass authorization checks to access and man...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  25. 🚨 EUVD-2026-88030

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart command documented in the README starts the container listening on 0.0.0.0:8080 with authentication disabled by default. When authentication is disabled, every request is mapp...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  26. 🚨 EUVD-2026-88030

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart command documented in the README starts the container listening on 0.0.0.0:8080 with authentication disabled by default. When authentication is disabled, every request is mapp...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  27. 🚨 EUVD-2026-88030

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart command documented in the README starts the container listening on 0.0.0.0:8080 with authentication disabled by default. When authentication is disabled, every request is mapp...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  28. 🚨 EUVD-2026-88030

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“… Updated: 2026-09-27

    πŸ“ Obot is an open-source AI agent/MCP platform. In all versions up to and including commit d7e6970, the Docker quickstart command documented in the README starts the container listening on 0.0.0.0:8080 with authentication disabled by default. When authentication is disabled, every request is mapp...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  29. 🚨 EUVD-2026-88020

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.3.8 fails to validate alert rule type and duration bounds, allowing authenticated non-administrator users to create malformed rules that trigger unrecovered panics in the alert evaluator goroutine. Attackers can submit a crafted alert rule via t...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  30. 🚨 EUVD-2026-88021

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenticated users with nezha:service:write scope to submit privileged task types through the service API. Attackers can deliver command execu...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  31. 🚨 EUVD-2026-88020

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.3.8 fails to validate alert rule type and duration bounds, allowing authenticated non-administrator users to create malformed rules that trigger unrecovered panics in the alert evaluator goroutine. Attackers can submit a crafted alert rule via t...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  32. 🚨 EUVD-2026-88021

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenticated users with nezha:service:write scope to submit privileged task types through the service API. Attackers can deliver command execu...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  33. 🚨 EUVD-2026-88020

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.3.8 fails to validate alert rule type and duration bounds, allowing authenticated non-administrator users to create malformed rules that trigger unrecovered panics in the alert evaluator goroutine. Attackers can submit a crafted alert rule via t...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  34. 🚨 EUVD-2026-88021

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenticated users with nezha:service:write scope to submit privileged task types through the service API. Attackers can deliver command execu...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  35. 🚨 EUVD-2026-88021

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenticated users with nezha:service:write scope to submit privileged task types through the service API. Attackers can deliver command execu...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  36. 🚨 EUVD-2026-88020

    πŸ“Š Score: 7.1/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.3.8 fails to validate alert rule type and duration bounds, allowing authenticated non-administrator users to create malformed rules that trigger unrecovered panics in the alert evaluator goroutine. Attackers can submit a crafted alert rule via t...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  37. 🚨 EUVD-2026-88022

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha versions 2.0.10 through 2.3.2 use a restricted HTTP client to validate user-configurable notification and DDNS webhook URLs, but the denylist did not cover IPv6 transition ranges β€” specifically the 6to4 prefix 2002::/16 and the local-use IPv4/IPv6 transl...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  38. 🚨 EUVD-2026-88023

    πŸ“Š Score: 6.0/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha is a server and website monitoring tool. In versions >= 2.2.11 and < 2.3.1, the service sentinel worker (service/singleton/servicesentinel.go) contains an incomplete fix for a previously reported nil dereference denial of service (GHSA-qjpp-gffx-2wm9). T...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  39. 🚨 EUVD-2026-88023

    πŸ“Š Score: 6.0/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha is a server and website monitoring tool. In versions >= 2.2.11 and < 2.3.1, the service sentinel worker (service/singleton/servicesentinel.go) contains an incomplete fix for a previously reported nil dereference denial of service (GHSA-qjpp-gffx-2wm9). T...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  40. 🚨 EUVD-2026-88022

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha versions 2.0.10 through 2.3.2 use a restricted HTTP client to validate user-configurable notification and DDNS webhook URLs, but the denylist did not cover IPv6 transition ranges β€” specifically the 6to4 prefix 2002::/16 and the local-use IPv4/IPv6 transl...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  41. 🚨 EUVD-2026-88022

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha versions 2.0.10 through 2.3.2 use a restricted HTTP client to validate user-configurable notification and DDNS webhook URLs, but the denylist did not cover IPv6 transition ranges β€” specifically the 6to4 prefix 2002::/16 and the local-use IPv4/IPv6 transl...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  42. 🚨 EUVD-2026-88023

    πŸ“Š Score: 6.0/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha is a server and website monitoring tool. In versions >= 2.2.11 and < 2.3.1, the service sentinel worker (service/singleton/servicesentinel.go) contains an incomplete fix for a previously reported nil dereference denial of service (GHSA-qjpp-gffx-2wm9). T...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  43. 🚨 EUVD-2026-88022

    πŸ“Š Score: 5.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha versions 2.0.10 through 2.3.2 use a restricted HTTP client to validate user-configurable notification and DDNS webhook URLs, but the denylist did not cover IPv6 transition ranges β€” specifically the 6to4 prefix 2002::/16 and the local-use IPv4/IPv6 transl...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  44. 🚨 EUVD-2026-88023

    πŸ“Š Score: 6.0/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha is a server and website monitoring tool. In versions >= 2.2.11 and < 2.3.1, the service sentinel worker (service/singleton/servicesentinel.go) contains an incomplete fix for a previously reported nil dereference denial of service (GHSA-qjpp-gffx-2wm9). T...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  45. 🚨 EUVD-2026-88025

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha 2.2.3 contains a Host header injection regression in the OAuth2 redirect endpoint. When the new optional dashboard_host setting is empty, /api/v1/oauth2/{provider} (cmd/dashboard/controller/oauth2.go) reflects the attacker-supplied HTTP Host header into ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  46. 🚨 EUVD-2026-88024

    πŸ“Š Score: 2.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.2.7 contains an information disclosure vulnerability in the GET /api/v1/profile endpoint that returns the bcrypt-hashed password field of authenticated users. Attackers can extract password hashes and perform offline cracking attacks without rat...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  47. 🚨 EUVD-2026-88024

    πŸ“Š Score: 2.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.2.7 contains an information disclosure vulnerability in the GET /api/v1/profile endpoint that returns the bcrypt-hashed password field of authenticated users. Attackers can extract password hashes and perform offline cracking attacks without rat...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  48. 🚨 EUVD-2026-88025

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha 2.2.3 contains a Host header injection regression in the OAuth2 redirect endpoint. When the new optional dashboard_host setting is empty, /api/v1/oauth2/{provider} (cmd/dashboard/controller/oauth2.go) reflects the attacker-supplied HTTP Host header into ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  49. 🚨 EUVD-2026-88024

    πŸ“Š Score: 2.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha before 2.2.7 contains an information disclosure vulnerability in the GET /api/v1/profile endpoint that returns the bcrypt-hashed password field of authenticated users. Attackers can extract password hashes and perform offline cracking attacks without rat...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability

  50. 🚨 EUVD-2026-88025

    πŸ“Š Score: 9.3/10 (CVSS v3.1)
    πŸ“¦ Product: nezha
    🏒 Vendor: nezhahq
    πŸ“… Updated: 2026-09-27

    πŸ“ Nezha 2.2.3 contains a Host header injection regression in the OAuth2 redirect endpoint. When the new optional dashboard_host setting is empty, /api/v1/oauth2/{provider} (cmd/dashboard/controller/oauth2.go) reflects the attacker-supplied HTTP Host header into ...

    πŸ”— euvd.enisa.europa.eu/vulnerabi

    #cybersecurity #infosec #euvd #cve #vulnerability