<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T18:01:27.108324+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-25046</id>
    <title>cnvd-2018-25046</title>
    <updated>2026-10-02T18:01:27.111510+00:00</updated>
    <content>cnvd-2018-25046</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-25046"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-173050</id>
    <title>EUVD-2026-173050</title>
    <updated>2026-10-02T18:01:27.111538+00:00</updated>
    <content>EUVD-2026-173050</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-173050"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-16031</id>
    <title>fkie_cve-2017-16031</title>
    <updated>2026-10-02T18:01:27.111551+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Socket.io is a realtime application framework that provides communication via websockets. Because socket.io 0.9.6 and earlier depends on `Math.random()` to create socket IDs, the IDs are predictable. An attacker is able to guess the socket ID and gain access to socket.io servers, potentially obtaining sensitive information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-16031"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qv2v-m59f-v5fw</id>
    <title>GHSA-qv2v-m59f-v5fw — Insecure randomness in socket.io</title>
    <updated>2026-10-02T18:01:27.111578+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: socket.io</p>
<p>Affected versions of `socket.io` depend on `Math.random()` to create socket IDs, and therefore the IDs are predictable. With enough information on prior IDs, an attacker may be able to guess the socket ID and gain access to socket.io servers without authorization.</p>
<p>## Recommendation</p>
<p>Update to v0.9.7 or later.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qv2v-m59f-v5fw"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-16031</id>
    <title>gsd-2017-16031</title>
    <updated>2026-10-02T18:01:27.111602+00:00</updated>
    <content>gsd-2017-16031</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-16031"/>
  </entry>
</feed>
