FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

conduit -- authentication bypass vulnerability

Affected packages
matrix-conduit < 0.10.13

Details

VuXML ID 1ff5a036-a13e-11f1-a129-901b0e9408dc
Discovery 2026-08-26
Entry 2026-08-26

Conduit team reports:

Fixes a vulnerability where endpoints which required authentication, but functionality do not depend on the user/server calling it, could have their authentication bypassed, as well as causing crashes for all other authenticated endpoints. It is recommended you upgrade ASAP.

References

URL https://conduit.rs/changelog/#v0-10-13-2026-08-26