<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T08:02:27.397925+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-02913</id>
    <title>bdu:2022-02913</title>
    <updated>2026-10-08T08:02:27.401569+00:00</updated>
    <content>bdu:2022-02913</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-02913"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cisco-sa-fmc-xss-sfpecvgt</id>
    <title>cisco-sa-fmc-xss-SfpEcvGT — Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability</title>
    <updated>2026-10-08T08:02:27.401601+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack.

This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by convincing a user to click a link designed to pass malicious input to the interface. A successful exploit could allow the attacker to conduct cross-site scripting attacks and gain access to sensitive browser-based information.

Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.



This advisory is part of the April 2022 release of the Cisco ASA, FTD, and FMC Security Advisory Bundled publication. For a complete list of the advisories and links to them, see Cisco Event Response: April 2022 Cisco ASA, FMC, and FTD Software Security Advisory Bundled Publication ["https://sec.cloudapps.cisco.com/security/center/viewErp.x?alertId=ERP-74836"].</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cisco-sa-fmc-xss-sfpecvgt"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-199605</id>
    <title>EUVD-2026-199605</title>
    <updated>2026-10-08T08:02:27.401638+00:00</updated>
    <content>EUVD-2026-199605</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-199605"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-20740</id>
    <title>fkie_cve-2022-20740</title>
    <updated>2026-10-08T08:02:27.401651+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack. This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by convincing a user to click a link designed to pass malicious input to the interface. A successful exploit could allow the attacker to conduct cross-site scripting attacks and gain access to sensitive browser-based information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-20740"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-39fq-5jf8-4787</id>
    <title>GHSA-39fq-5jf8-4787</title>
    <updated>2026-10-08T08:02:27.401675+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack. This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by convincing a user to click a link designed to pass malicious input to the interface. A successful exploit could allow the attacker to conduct cross-site scripting attacks and gain access to sensitive browser-based information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-39fq-5jf8-4787"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-20740</id>
    <title>gsd-2022-20740</title>
    <updated>2026-10-08T08:02:27.401692+00:00</updated>
    <content>gsd-2022-20740</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-20740"/>
  </entry>
</feed>
