Nixpkgs security tracker

Try the new UI
Login with GitHub

Suggestions search

With package: python314Packages.chirpstack-api

Found 2 matching suggestions

View:
Compact
Detailed
Untriaged
Permalink CVE-2026-78136
7.8 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): None (N)
  • User Interaction (UI): Required (R)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): None (N)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 1 month ago Activity log
  • Created suggestion
chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV …

chirpmyradio CHIRP before 39178db allows eval injection via crafted CSV data. This occurs in _clean_tmode in drivers/kenwood_itm.py.

Affected products

CHIRP
  • <39178dbfc4fece083ab9ed20286d6ae3a91a718e

Matching in nixpkgs

pkgs.chirpstack-gateway-mesh

Turn LoRa gateways into relays for extending the range of LoRa networks

  • nixos-unstable -
    • nixos-unstable-small 4.1.4
  • nixos-26.05 -
    • nixos-26.05-small 4.1.3

pkgs.chirpstack-gateway-bridge

Gateway Bridge abstracts Packet Forwarder protocols into Protobuf or JSON over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.1.2
  • nixos-26.05 -
    • nixos-26.05-small 4.1.1

pkgs.chirpstack-mqtt-forwarder

Forwarder which can be installed on the gateway to forward LoRa data over MQTT

  • nixos-unstable -
    • nixos-unstable-small 4.6.1
  • nixos-26.05 -
    • nixos-26.05-small 4.5.1

Package maintainers

Dismissed
(not in Nixpkgs)
Permalink CVE-2026-71282
6.5 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): None (N)
  • Scope (S): Unchanged (U)
  • Confidentiality (C): High (H)
  • Integrity (I): None (N)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): None (N)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Unchanged (U)
  • Modified Integrity (MI): None (N)
  • Modified Availability (MA): None (N)
updated 1 month, 3 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse dismissed (not in Nixpkgs)
ChirpStack SQLite Backend SQL Injection via Device Tag Key in ListDevices Filter

ChirpStack's SQLite-backend device tag filtering (chirpstack/src/storage/device.rs, in both get_count() and list()) interpolates the user-supplied tag KEY directly into a raw SQL fragment via Rust's format!() macro (`dsl::sql::<Bool>(&format!("device.tags->>'{}' =", k)).bind::<Text, _>(v)`), while only the tag VALUE is safely parameter-bound via Diesel's .bind(). An authenticated user with device-list access can inject SQL via a crafted tag key when the SQLite backend (chirpstack-sqlite package) is in use; the PostgreSQL backend is unaffected as it uses Diesel's native JSONB containment operator instead of raw SQL string formatting.

Affected products

chirpstack
  • =<4.19.0-test.5

Matching in nixpkgs

Package maintainers