<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:56:00.610086+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-06615</id>
    <title>bdu:2022-06615</title>
    <updated>2026-10-02T16:56:00.731581+00:00</updated>
    <content>bdu:2022-06615</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-06615"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0869</id>
    <title>certfr-2023-avi-0869 — De multiples vulnérabilités ont été découvertes dans Zimbra &lt;span
id="Zimbra_Collaboration_Daffodil_10.0.5_Patch_Releas…</title>
    <updated>2026-10-02T16:56:00.731626+00:00</updated>
    <content>certfr-2023-avi-0869</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0869"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-169899</id>
    <title>EUVD-2026-169899</title>
    <updated>2026-10-02T16:56:00.731647+00:00</updated>
    <content>EUVD-2026-169899</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-169899"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7746</id>
    <title>fkie_cve-2020-7746</title>
    <updated>2026-10-02T16:56:00.731661+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>This affects the package chart.js before 2.9.4. The options parameter is not properly sanitized when it is processed. When the options are processed, the existing options (or the defaults options) are deeply merged with provided options. However, during this operation, the keys of the object being set are not checked, leading to a prototype pollution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-7746"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-h68q-55jf-x68w</id>
    <title>GHSA-h68q-55jf-x68w — Prototype pollution in chart.js</title>
    <updated>2026-10-02T16:56:00.731693+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: chart.js</p>
<p>This affects the package chart.js before 2.9.4. The options parameter is not properly sanitized when it is processed. When the options are processed, the existing options (or the defaults options) are deeply merged with provided options. However, during this operation, the keys of the object being set are not checked, leading to a prototype pollution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-h68q-55jf-x68w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-7746</id>
    <title>gsd-2020-7746</title>
    <updated>2026-10-02T16:56:00.731719+00:00</updated>
    <content>gsd-2020-7746</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-7746"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2026-033235</id>
    <title>jvndb-2026-033235</title>
    <updated>2026-10-02T16:56:00.731731+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CONPROSYS series provided by Contec Co., Ltd. contains multiple vulnerabilities listed below.&lt;a href='https://cwe.mitre.org/data/definitions/79.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/78.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/548.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/1395.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://www.cve.org/CVERecord?id=CVE-2020-7746' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/434.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/79.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/787.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/352.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/256.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/306.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/121.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/522.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/306.html' target='_blank'&gt;&lt;/a&gt;&lt;a href='https://cwe.mitre.org/data/definitions/95.html' target='_blank'&gt;&lt;/a&gt;&lt;ul&gt;&lt;li&gt;Cross-site scripting (CWE-79) - CVE-2026-82773, CVE-2026-82776, CVE-2026-82788&lt;/li&gt;&lt;li&gt;OS command injection (CWE-78) - CVE-2026-82774, CVE-2026-82777, CVE-2026-82779&lt;/li&gt;&lt;li&gt;Exposure of information through directory listing (CWE-548…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2026-033235"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:6813</id>
    <title>RHSA-2022:6813 — Red Hat Security Advisory: Red Hat Process Automation Manager 7.13.1 security update</title>
    <updated>2026-10-02T16:56:00.731768+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>chart.js: prototype pollution jackson-databind: denial of service via a large depth of nested objects immer: type confusion vulnerability can lead to a bypass of CVE-2020-28477 minimist: prototype pollution node-fetch: exposure of sensitive information to an unauthorized actor parse-url: Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository ionicabizau/parse-url cross-fetch: Exposure of Private Personal Information to an Unauthorized Actor drools: unsafe data deserialization in StreamUtils eventsource: Exposure of Sensitive Information Business-central: Possible XML External Entity Injection attack mysql-connector-java: Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Connectors jdbc-postgresql: Unchecked Class Instantiation when providing Plugin Classes xerces-j2: infinite loop when handling specially crafted XML document payloads artemis-commons: Apache ActiveMQ Artemis DoS node-forge: Signature verification leniency in checking `digestAlgorithm` structure can lead to signature forgery node-forge: Signature verification failing to check tailing garbage bytes can lead to signature forgery Moment.js: Path traversal  in moment.locale postgresql-jdbc: Arbitrary File Write Vulnerability moment: inefficient parsing algorithm resulting in DoS</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:6813"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-7746</id>
    <title>UBUNTU-CVE-2020-7746</title>
    <updated>2026-10-02T16:56:00.731823+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: node-chart.js</p>
<p>This affects the package chart.js before 2.9.4. The options parameter is not properly sanitized when it is processed. When the options are processed, the existing options (or the defaults options) are deeply merged with provided options. However, during this operation, the keys of the object being set are not checked, leading to a prototype pollution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-7746"/>
  </entry>
</feed>
