<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T18:54:15.804047+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-96189</id>
    <title>EUVD-2026-96189</title>
    <updated>2026-10-03T18:54:15.807931+00:00</updated>
    <content>EUVD-2026-96189</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-96189"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-9267</id>
    <title>fkie_cve-2015-9267</title>
    <updated>2026-10-03T18:54:15.807965+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-9267"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q9w8-9j2h-5cw2</id>
    <title>GHSA-q9w8-9j2h-5cw2</title>
    <updated>2026-10-03T18:54:15.807996+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q9w8-9j2h-5cw2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-9267</id>
    <title>gsd-2015-9267</title>
    <updated>2026-10-03T18:54:15.808013+00:00</updated>
    <content>gsd-2015-9267</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-9267"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2021-000018</id>
    <title>jvndb-2021-000018</title>
    <updated>2026-10-03T18:54:15.808023+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The installers of E START products by GMO INSIGHT Inc. contain an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries in the folder specified by the TEMP environment variable or where the installer resides (CWE-427, CVE-2015-9267, and CVE-2015-9268).

BlackWingCat of PinkFlyingWhale reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2021-000018"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-9267</id>
    <title>UBUNTU-CVE-2015-9267</title>
    <updated>2026-10-03T18:54:15.808040+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: nsis</p>
<p>Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-9267"/>
  </entry>
</feed>
