<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T01:33:15.833871+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2016-01359</id>
    <title>bdu:2016-01359</title>
    <updated>2026-10-03T01:33:15.958808+00:00</updated>
    <content>bdu:2016-01359</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2016-01359"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2015-6834</id>
    <title>Withdrawn: BELL-CVE-2015-6834 — CVE-2015-6834 does not affect BellSoft software</title>
    <updated>2026-10-03T01:33:15.958845+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2015-6834"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2015-avi-387</id>
    <title>certfr-2015-avi-387 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;PHP&lt;/span&gt;. Elles permettent à un attaquant de…</title>
    <updated>2026-10-03T01:33:15.958864+00:00</updated>
    <content>certfr-2015-avi-387</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2015-avi-387"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-06061</id>
    <title>cnvd-2015-06061</title>
    <updated>2026-10-03T01:33:15.958880+00:00</updated>
    <content>cnvd-2015-06061</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-06061"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-94557</id>
    <title>EUVD-2026-94557</title>
    <updated>2026-10-03T01:33:15.958891+00:00</updated>
    <content>EUVD-2026-94557</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-94557"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-6834</id>
    <title>fkie_cve-2015-6834</title>
    <updated>2026-10-03T01:33:15.958901+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via vectors related to (1) the Serializable interface, (2) the SplObjectStorage class, and (3) the SplDoublyLinkedList class, which are mishandled during unserialization.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-6834"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6m7q-7r8q-jg24</id>
    <title>GHSA-6m7q-7r8q-jg24</title>
    <updated>2026-10-03T01:33:15.958929+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via vectors related to (1) the Serializable interface, (2) the SplObjectStorage class, and (3) the SplDoublyLinkedList class, which are mishandled during unserialization.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6m7q-7r8q-jg24"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-6834</id>
    <title>gsd-2015-6834</title>
    <updated>2026-10-03T01:33:15.958945+00:00</updated>
    <content>gsd-2015-6834</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-6834"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2016:0457</id>
    <title>RHSA-2016:0457 — Red Hat Security Advisory: rh-php56-php security update</title>
    <updated>2026-10-03T01:33:15.958955+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>php: segmentation fault in Phar::convertToData on invalid file php: buffer overflow and stack smashing error in phar_fix_filepath php: Use After Free Vulnerability in unserialize() php: dangling pointer in the unserialization of ArrayObject items php: Files from archive can be extracted outside of destination directory using phar php: multiple unserialization use-after-free issues php: use-after-free vulnerability in session deserializer php: SOAP serialize_function_call() type confusion php: NULL pointer dereference in XSLTProcessor class php: NULL pointer dereference in XSLTProcessor class php: NULL pointer dereference in phar_get_fp_offset() php: uninitialized pointer in phar_make_dirstream()</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2016:0457"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:1633-1</id>
    <title>SUSE-SU-2015:1633-1 — Security update for php5</title>
    <updated>2026-10-03T01:33:15.958991+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for php5</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:1633-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-6834</id>
    <title>UBUNTU-CVE-2015-6834</title>
    <updated>2026-10-03T01:33:15.959009+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: php5</p>
<p>Multiple use-after-free vulnerabilities in PHP before 5.4.45, 5.5.x before 5.5.29, and 5.6.x before 5.6.13 allow remote attackers to execute arbitrary code via vectors related to (1) the Serializable interface, (2) the SplObjectStorage class, and (3) the SplDoublyLinkedList class, which are mishandled during unserialization.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-6834"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1425</id>
    <title>WID-SEC-W-2025-1425 — PHP: Mehrere Schwachstellen</title>
    <updated>2026-10-03T01:33:15.959029+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in PHP ausnutzen, um beliebigen Code mit den Rechten des Dienstes auszuführen, um einen Denial of Service Zustand hervorrufen oder um Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1425"/>
  </entry>
</feed>
