<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T21:31:16.665334+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-07605</id>
    <title>bdu:2023-07605</title>
    <updated>2026-10-02T21:31:17.501328+00:00</updated>
    <content>bdu:2023-07605</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-07605"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2017-18342</id>
    <title>Withdrawn: BELL-CVE-2017-18342 — CVE-2017-18342 does not affect BellSoft software</title>
    <updated>2026-10-02T21:31:17.501401+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2017-18342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-ansible-cmdb-cve-2017-18342</id>
    <title>BREW-ansible-cmdb-CVE-2017-18342 — PyYAML insecurely deserializes YAML strings leading to arbitrary code execution</title>
    <updated>2026-10-02T21:31:17.501449+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: ansible-cmdb</p>
<p>In PyYAML before 5.1, the `yaml.load()` API could execute arbitrary code. In other words, `yaml.safe_load` is not used.</p>
<p>This was intended to be fixed in 4.1, but due to [breaking changes](https://github.com/yaml/pyyaml/issues/192#issuecomment-401491470), 4.1 was yanked and 5.1 [contains](https://github.com/yaml/pyyaml/issues/207#issuecomment-472520007) the patch for CVE-2017-18342.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-ansible-cmdb-cve-2017-18342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0395</id>
    <title>certfr-2026-avi-0395 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T21:31:17.501504+00:00</updated>
    <content>certfr-2026-avi-0395</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0395"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-42857</id>
    <title>cnvd-2019-42857</title>
    <updated>2026-10-02T21:31:17.501541+00:00</updated>
    <content>cnvd-2019-42857</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-42857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-80130</id>
    <title>EUVD-2026-80130</title>
    <updated>2026-10-02T21:31:17.501566+00:00</updated>
    <content>EUVD-2026-80130</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-80130"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-18342</id>
    <title>fkie_cve-2017-18342</title>
    <updated>2026-10-02T21:31:17.501586+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In PyYAML before 5.1, the yaml.load() API could execute arbitrary code if used with untrusted data. The load() function has been deprecated in version 5.1 and the 'UnsafeLoader' has been introduced for backward compatibility with the function.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-18342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rprw-h62v-c2w7</id>
    <title>GHSA-rprw-h62v-c2w7 — PyYAML insecurely deserializes YAML strings leading to arbitrary code execution</title>
    <updated>2026-10-02T21:31:17.501620+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: PyYAML</p>
<p>In PyYAML before 5.1, the `yaml.load()` API could execute arbitrary code. In other words, `yaml.safe_load` is not used.</p>
<p>This was intended to be fixed in 4.1, but due to [breaking changes](https://github.com/yaml/pyyaml/issues/192#issuecomment-401491470), 4.1 was yanked and 5.1 [contains](https://github.com/yaml/pyyaml/issues/207#issuecomment-472520007) the patch for CVE-2017-18342.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rprw-h62v-c2w7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-18342</id>
    <title>gsd-2017-18342</title>
    <updated>2026-10-02T21:31:17.501655+00:00</updated>
    <content>gsd-2017-18342</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-18342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11108-1</id>
    <title>openSUSE-SU-2024:11108-1 — oci-cli-3.0.2-1.2 on GA media</title>
    <updated>2026-10-02T21:31:17.501675+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>oci-cli-3.0.2-1.2 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:11108-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/pysec-2018-49</id>
    <title>PYSEC-2018-49</title>
    <updated>2026-10-02T21:31:17.501707+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: pyyaml</p>
<p>In PyYAML before 5.1, the yaml.load() API could execute arbitrary code if used with untrusted data. The load() function has been deprecated in version 5.1 and the 'UnsafeLoader' has been introduced for backward compatibility with the function.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/pysec-2018-49"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-18342</id>
    <title>UBUNTU-CVE-2017-18342</title>
    <updated>2026-10-02T21:31:17.501746+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: pyyaml, Ubuntu:16.04:LTS: pyyaml, Ubuntu:18.04:LTS: pyyaml</p>
<p>In PyYAML before 5.1, the yaml.load() API could execute arbitrary code if used with untrusted data. The load() function has been deprecated in version 5.1 and the 'UnsafeLoader' has been introduced for backward compatibility with the function.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-18342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0054</id>
    <title>WID-SEC-W-2024-0054 — IBM Security Verify Access: Mehrere Schwachstellen</title>
    <updated>2026-10-02T21:31:17.501791+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in IBM Security Verify Access ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen offenzulegen, seine Privilegien zu erweitern oder komplexe Angriffe wie Cache Poisoning, Cross-Site-Scripting oder Session-Hijacking durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0054"/>
  </entry>
</feed>
