<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:17:38.025120+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-164015</id>
    <title>EUVD-2026-164015</title>
    <updated>2026-10-03T00:17:38.027965+00:00</updated>
    <content>EUVD-2026-164015</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-164015"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2010-2273</id>
    <title>fkie_cve-2010-2273</title>
    <updated>2026-10-03T00:17:38.027996+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple cross-site scripting (XSS) vulnerabilities in Dojo 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to dojo/resources/iframe_history.html, dojox/av/FLAudio.js, dojox/av/FLVideo.js, dojox/av/resources/audio.swf, dojox/av/resources/video.swf, util/buildscripts/jslib/build.js, and util/buildscripts/jslib/buildUtil.js, as demonstrated by the (1) dojoUrl and (2) testUrl parameters to util/doh/runner.html.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2010-2273"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-536q-8gxx-m782</id>
    <title>GHSA-536q-8gxx-m782 — Cross-Site Scripting in dojo</title>
    <updated>2026-10-03T00:17:38.028029+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: dojo</p>
<p>Versions of `dojo` prior to 1.4.2 are vulnerable to DOM-based Cross-Site Scripting (XSS). The package does not sanitize URL parameters in the `_testCommon.js` and `runner.html` test files, allowing attackers to execute arbitrary JavaScript in the victim's browser.</p>
<p>## Recommendation</p>
<p>Upgrade to version 1.4.2 or later.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-536q-8gxx-m782"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2010-2273</id>
    <title>gsd-2010-2273</title>
    <updated>2026-10-03T00:17:38.028058+00:00</updated>
    <content>gsd-2010-2273</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2010-2273"/>
  </entry>
</feed>
