<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:32:30.550912+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-785</id>
    <title>certfr-2022-avi-785 — De multiples vulnérabilités ont été découvertes dans IBM Cognos
Analytics. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-02T14:32:30.650905+00:00</updated>
    <content>certfr-2022-avi-785</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-785"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-37767</id>
    <title>cnvd-2021-37767</title>
    <updated>2026-10-02T14:32:30.650958+00:00</updated>
    <content>cnvd-2021-37767</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-37767"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-26113</id>
    <title>EUVD-2026-26113</title>
    <updated>2026-10-02T14:32:30.650981+00:00</updated>
    <content>EUVD-2026-26113</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-26113"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-28918</id>
    <title>fkie_cve-2021-28918</title>
    <updated>2026-10-02T14:32:30.651005+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indeterminate SSRF, RFI, and LFI attacks on many of the dependent packages. A remote unauthenticated attacker can bypass packages relying on netmask to filter IPs and reach critical VPN or LAN hosts.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-28918"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4c7m-wxvm-r7gc</id>
    <title>GHSA-4c7m-wxvm-r7gc — Improper parsing of octal bytes in netmask</title>
    <updated>2026-10-02T14:32:30.651052+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: netmask</p>
<p>Improper input validation of octal strings in netmask npm package v1.0.6 and below allows unauthenticated remote attackers to perform indeterminate SSRF, RFI, and LFI attacks on many of the dependent packages. A remote unauthenticated attacker can bypass packages relying on netmask to filter IPs and reach critical VPN or LAN hosts.</p>
<p>:exclamation: NOTE: The fix for this issue was incomplete. A subsequent fix was made in version `2.0.1` which was assigned [CVE-2021-29418 / GHSA-pch5-whg9-qr2r](https://github.com/advisories/GHSA-pch5-whg9-qr2r). For complete protection from this vulnerability an upgrade to version 2.0.1 or later is recommended.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4c7m-wxvm-r7gc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-28918</id>
    <title>gsd-2021-28918</title>
    <updated>2026-10-02T14:32:30.651104+00:00</updated>
    <content>gsd-2021-28918</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-28918"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:1499</id>
    <title>RHSA-2021:1499 — Red Hat Security Advisory: Red Hat Advanced Cluster Management 2.2.3 security and bug fix update</title>
    <updated>2026-10-02T14:32:30.651123+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nodejs-glob-parent: Regular expression denial of service nodejs-underscore: Arbitrary code execution via the template function nodejs-is-svg: ReDoS via malicious string nodejs-netmask: improper input validation of octal input data nodejs-netmask: incorrectly parses an IP address that has octal integer with invalid character</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:1499"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1354</id>
    <title>WID-SEC-W-2022-1354 — Red Hat Enterprise Linux: Mehrere Schwachstellen</title>
    <updated>2026-10-02T14:32:30.651164+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen, Dateien zu manipulieren oder Sicherheitsvorkehrungen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1354"/>
  </entry>
</feed>
