<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T07:48:23.028037+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-224616</id>
    <title>EUVD-2026-224616</title>
    <updated>2026-10-03T07:48:23.094197+00:00</updated>
    <content>EUVD-2026-224616</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-224616"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-21940</id>
    <title>fkie_cve-2022-21940</title>
    <updated>2026-10-03T07:48:23.094234+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in Johnson Controls System Configuration Tool (SCT) version 14 prior to 14.2.3 and version 15 prior to 15.0.3 could allow access to the cookie.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-21940"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-hp26-q6wq-vrfp</id>
    <title>GHSA-hp26-q6wq-vrfp</title>
    <updated>2026-10-03T07:48:23.094267+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in Johnson Controls System Configuration Tool (SCT) version 14 prior to 14.2.3 and version 15 prior to 15.0.3 could allow access to the cookie.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-hp26-q6wq-vrfp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-21940</id>
    <title>gsd-2022-21940</title>
    <updated>2026-10-03T07:48:23.094284+00:00</updated>
    <content>gsd-2022-21940</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-21940"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-040-03</id>
    <title>ICSA-23-040-03 — Johnson Controls System Configuration Tool (SCT)</title>
    <updated>2026-10-03T07:48:23.094296+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>System Configuration Tool (SCT) versions 14 and 15 are vulnerable during a cross-site scripting attack. This could allow an attacker to access cookies and take control of an affected system.-CVE-2022-21939 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). System Configuration Tool (SCT) versions 14 and 15 are vulnerable during a cross-site scripting attack. This could allow an attacker to access cookies and take control of an affected system.-CVE-2022-21940 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-040-03"/>
  </entry>
</feed>
