<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T22:18:29.985749+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-33471</id>
    <title>cnvd-2020-33471</title>
    <updated>2026-10-03T22:18:29.991964+00:00</updated>
    <content>cnvd-2020-33471</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-33471"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-41143</id>
    <title>EUVD-2026-41143</title>
    <updated>2026-10-03T22:18:29.991999+00:00</updated>
    <content>EUVD-2026-41143</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-41143"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-12265</id>
    <title>fkie_cve-2020-12265</title>
    <updated>2026-10-03T22:18:29.992013+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The decompress package before 4.2.1 for Node.js is vulnerable to Arbitrary File Write via ../ in an archive member, when a symlink is used, because of Directory Traversal.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-12265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qgfr-5hqp-vrw9</id>
    <title>GHSA-qgfr-5hqp-vrw9 — Path Traversal in decompress</title>
    <updated>2026-10-03T22:18:29.992041+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: decompress</p>
<p>Versions of `decompress` prior to 4.2.1 are vulnerable to Arbitrary File Write. The package fails to prevent extraction of files with relative paths, allowing attackers to write to any folder in the system by including filenames containing`../`.</p>
<p>## Recommendation</p>
<p>Upgrade to version 4.2.1 or later.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qgfr-5hqp-vrw9"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-12265</id>
    <title>gsd-2020-12265</title>
    <updated>2026-10-03T22:18:29.992066+00:00</updated>
    <content>gsd-2020-12265</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-12265"/>
  </entry>
</feed>
