<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T10:28:00.288693+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-20275</id>
    <title>cnvd-2021-20275</title>
    <updated>2026-10-03T10:28:00.294040+00:00</updated>
    <content>cnvd-2021-20275</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-20275"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-38172</id>
    <title>EUVD-2026-38172</title>
    <updated>2026-10-03T10:28:00.294080+00:00</updated>
    <content>EUVD-2026-38172</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-38172"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-7932</id>
    <title>fkie_cve-2020-7932</title>
    <updated>2026-10-03T10:28:00.294094+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters. If an attacker tricks a user into clicking a malicious link in OMERO.web, the information in the query parameters may be exposed in the Referer header seen by the target. Information in the URL path such as object IDs may also be exposed.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-7932"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-vwxv-frj6-fhc9</id>
    <title>GHSA-vwxv-frj6-fhc9 — OMERO-web Sensitive Data Exposure</title>
    <updated>2026-10-03T10:28:00.294124+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: omero-web</p>
<p>OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters. If an attacker tricks a user into clicking a malicious link in OMERO.web, the information in the query parameters may be exposed in the Referer header seen by the target. Information in the URL path such as object IDs may also be exposed.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-vwxv-frj6-fhc9"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-7932</id>
    <title>gsd-2020-7932</title>
    <updated>2026-10-03T10:28:00.294149+00:00</updated>
    <content>gsd-2020-7932</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-7932"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/pysec-2020-244</id>
    <title>PYSEC-2020-244</title>
    <updated>2026-10-03T10:28:00.294160+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: omero-web</p>
<p>OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters. If an attacker tricks a user into clicking a malicious link in OMERO.web, the information in the query parameters may be exposed in the Referer header seen by the target. Information in the URL path such as object IDs may also be exposed.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/pysec-2020-244"/>
  </entry>
</feed>
