General Tech

Radicle: Disclosure of Vulnerability in the Network Protocol

Radicle, a distributed version control system, has disclosed a vulnerability in its network protocol, which could allow malicious actors to intercept and modify data. The vulnerability, tracked as CVE-2023-1018, affects all versions of Radicle prior to 0.17.0. The issue lies in the way Radicle handles authentication and encryption, allowing an attacker to inject malicious code into a repository. Radicle has released a patch for the vulnerability and recommends users update to the latest version. The company has also offered a bug bounty for the discovery of the vulnerability.

Read the full article at radicle.dev →