Description
Bostr is an nostr relay aggregator proxy that acts like a regular nostr relay. bostr let everyone in even having authorized_keys being set when noscraper is set to true. This vulnerability is fixed in 3.0.10.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2502 | Bostr is an nostr relay aggregator proxy that acts like a regular nostr relay. bostr let everyone in even having authorized_keys being set when noscraper is set to true. This vulnerability is fixed in 3.0.10. |
Github GHSA |
GHSA-5cf7-cxrf-mq73 | Bostr Improper Authorization vulnerability |
References
History
Fri, 16 Aug 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Yonle
Yonle bostr |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:yonle:bostr:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Yonle
Yonle bostr |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-01T17:45:32.389Z
Reserved: 2024-07-24T16:51:40.951Z
Link: CVE-2024-41962
Updated: 2024-08-01T17:45:29.106Z
Status : Analyzed
Published: 2024-08-01T17:16:09.507
Modified: 2024-08-16T16:34:48.873
Link: CVE-2024-41962
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA