<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T02:35:26.467813+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-06049</id>
    <title>bdu:2023-06049</title>
    <updated>2026-10-03T02:35:26.668438+00:00</updated>
    <content>bdu:2023-06049</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-06049"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-187447</id>
    <title>EUVD-2026-187447</title>
    <updated>2026-10-03T02:35:26.668492+00:00</updated>
    <content>EUVD-2026-187447</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-187447"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-3874</id>
    <title>fkie_cve-2022-3874</title>
    <updated>2026-10-03T02:35:26.668507+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-3874"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9jfq-54vc-9rr2</id>
    <title>Withdrawn: GHSA-9jfq-54vc-9rr2 — Foreman Transpilation Enables OS Command Injection</title>
    <updated>2026-10-03T02:35:26.668545+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> RubyGems: foreman</p>
<p>A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9jfq-54vc-9rr2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-3874</id>
    <title>gsd-2022-3874</title>
    <updated>2026-10-03T02:35:26.668594+00:00</updated>
    <content>gsd-2022-3874</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-3874"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2023:5931</id>
    <title>RHSA-2023:5931 — Red Hat Security Advisory: Satellite 6.13.5 Async Security Update</title>
    <updated>2026-10-03T02:35:26.668618+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>openssl: c_rehash script allows command injection openssl: the c_rehash script allows command injection foreman: OS command injection via ct_command and fcct_command GitPython: improper user input validation leads into a RCE ruby-git: code injection vulnerability ruby-git: code injection vulnerability Satellite/Foreman: Arbitrary code execution through yaml global parameters OpenSSL: Excessive time spent checking DH q parameter value python-django: Potential bypass of validation when uploading multiple files using one form field python-django: Potential regular expression denial of service vulnerability in EmailValidator/URLValidator golang: net/http, x/net/http2: rapid stream resets can cause excessive work (CVE-2023-44487) GitPython: Insecure non-multi options in clone and clone_from is not blocked HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2023:5931"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2723</id>
    <title>WID-SEC-W-2023-2723 — Red Hat Satellite: Mehrere Schwachstellen</title>
    <updated>2026-10-03T02:35:26.668687+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Red Hat Satellite ausnutzen, um beliebigen Programmcode auszuführen oder einen Denial of Service Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2723"/>
  </entry>
</feed>
