<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T17:29:36.636675+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2015-00666</id>
    <title>bdu:2015-00666</title>
    <updated>2026-10-02T17:29:36.684571+00:00</updated>
    <content>bdu:2015-00666</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2015-00666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-100182</id>
    <title>EUVD-2026-100182</title>
    <updated>2026-10-02T17:29:36.684626+00:00</updated>
    <content>EUVD-2026-100182</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-100182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-4650</id>
    <title>fkie_cve-2014-4650</title>
    <updated>2026-10-02T17:29:36.684640+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-4650"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-33c8-ggqv-8g5p</id>
    <title>GHSA-33c8-ggqv-8g5p</title>
    <updated>2026-10-02T17:29:36.684678+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-33c8-ggqv-8g5p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-4650</id>
    <title>gsd-2014-4650</title>
    <updated>2026-10-02T17:29:36.684695+00:00</updated>
    <content>gsd-2014-4650</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-4650"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0086-1</id>
    <title>openSUSE-SU-2020:0086-1 — Security update for python3</title>
    <updated>2026-10-02T17:29:36.684706+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for python3</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:0086-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:1064</id>
    <title>RHSA-2015:1064 — Red Hat Security Advisory: python27 security, bug fix, and enhancement update</title>
    <updated>2026-10-02T17:29:36.684738+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>python: multiple unbound readline() DoS flaws in python stdlib python: XMLRPC library unrestricted decompression of HTTP responses using gzip enconding python: buffer overflow in socket.recvfrom_into() python: missing boundary check in JSON module python: CGIHTTPServer module does not properly handle URL-encoded path separators in URLs python: buffer() integer overflow leading to out of bounds read</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:1064"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:1344-1</id>
    <title>SUSE-SU-2015:1344-1 — Security update for python</title>
    <updated>2026-10-02T17:29:36.684765+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for python</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:1344-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-4650</id>
    <title>UBUNTU-CVE-2014-4650</title>
    <updated>2026-10-02T17:29:36.684781+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: python2.7, Ubuntu:14.04:LTS: python3.4</p>
<p>The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-4650"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2521</id>
    <title>WID-SEC-W-2025-2521 — Python: Mehrere Schwachstellen</title>
    <updated>2026-10-02T17:29:36.684803+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Python ausnutzen, um einen Denial of Service Angriff durchzuführen oder Code zur Ausführung zu bringen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2521"/>
  </entry>
</feed>
