<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:06:24.293262+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0701</id>
    <title>certfr-2023-avi-0701 — De multiples vulnérabilités ont été découvertes dans Splunk. Certaines
d'entre elles permettent à un attaquant de provo…</title>
    <updated>2026-10-02T16:06:24.300999+00:00</updated>
    <content>certfr-2023-avi-0701</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0701"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-39695</id>
    <title>cnvd-2021-39695</title>
    <updated>2026-10-02T16:06:24.301034+00:00</updated>
    <content>cnvd-2021-39695</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-39695"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-291519</id>
    <title>EUVD-2026-291519</title>
    <updated>2026-10-02T16:06:24.301049+00:00</updated>
    <content>EUVD-2026-291519</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-291519"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-20225</id>
    <title>fkie_cve-2018-20225</title>
    <updated>2026-10-02T16:06:24.301060+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in pip (all versions) because it installs the version with the highest version number, even if the user had intended to obtain a private package from a private index. This only affects use of the --extra-index-url option, and exploitation requires that the package does not already exist in the public index (and thus the attacker can put the package there with an arbitrary version number). NOTE: it has been reported that this is intended functionality and the user is responsible for using --extra-index-url securely</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-20225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7p5p-7qq5-cc86</id>
    <title>GHSA-7p5p-7qq5-cc86</title>
    <updated>2026-10-02T16:06:24.301087+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in pip (all versions) because it installs the version with the highest version number, even if the user had intended to obtain a private package from a private index. This only affects use of the --extra-index-url option, and exploitation requires that the package does not already exist in the public index (and thus the attacker can put the package there with an arbitrary version number).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7p5p-7qq5-cc86"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-20225</id>
    <title>gsd-2018-20225</title>
    <updated>2026-10-02T16:06:24.301103+00:00</updated>
    <content>gsd-2018-20225</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-20225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2018-20225</id>
    <title>msrc_CVE-2018-20225 — An issue was discovered in pip (all versions) because it installs the version with the highest version number, even if…</title>
    <updated>2026-10-02T16:06:24.301114+00:00</updated>
    <content>msrc_CVE-2018-20225</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2018-20225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-20225</id>
    <title>UBUNTU-CVE-2018-20225</title>
    <updated>2026-10-02T16:06:24.301129+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: python-pip, Ubuntu:Pro:16.04:LTS: python-pip, Ubuntu:Pro:18.04:LTS: python-pip, Ubuntu:Pro:20.04:LTS: python-pip</p>
<p>An issue was discovered in pip (all versions) because it installs the version with the highest version number, even if the user had intended to obtain a private package from a private index. This only affects use of the --extra-index-url option, and exploitation requires that the package does not already exist in the public index (and thus the attacker can put the package there with an arbitrary version number). NOTE: it has been reported that this is intended functionality and the user is responsible for using --extra-index-url securely</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-20225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2229</id>
    <title>WID-SEC-W-2023-2229 — Splunk Splunk Enterprise: Mehrere Schwachstellen</title>
    <updated>2026-10-02T16:06:24.301156+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentifizierter Angreifer kann mehrere Schwachstellen in Splunk Splunk Enterprise ausnutzen, um beliebigen Code auszuführen, einen 'Denial of Service'-Zustand zu verursachen, seine Privilegien zu erweitern und weitere, nicht spezifizierte Auswirkungen zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2229"/>
  </entry>
</feed>
