<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T06:09:51.141997+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-195808</id>
    <title>EUVD-2026-195808</title>
    <updated>2026-10-03T06:09:51.204997+00:00</updated>
    <content>EUVD-2026-195808</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-195808"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-2850</id>
    <title>fkie_cve-2023-2850</title>
    <updated>2026-10-03T06:09:51.205035+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>NodeBB is affected by a Cross-Site WebSocket Hijacking vulnerability due to missing validation of the request origin. Exploitation of this vulnerability allows certain user information to be extracted by attacker.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-2850"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4qcv-qf38-5j3j</id>
    <title>GHSA-4qcv-qf38-5j3j — Unintentional leakage of private information via cross-origin websocket session hijacking</title>
    <updated>2026-10-03T06:09:51.205068+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: nodebb</p>
<p>### Impact</p>
<p>Private messages or posts might be leaked to third parties if victim opens the attackers site while browsing nodebb.</p>
<p>### Patches</p>
<p>* Patched in v3.1.3
* Backported to v2.x line via v2.8.13</p>
<p>### Workarounds</p>
<p>Users can cherry-pick https://github.com/NodeBB/NodeBB/commit/51096ad2345fb1d1380bec0a447113489ef6c359 if they are on v3.x</p>
<p>If you are running v2.x of NodeBB, you can cherry-pick a5d92da9ddac5607ab7f737520a66eaed6d3ddee followed by 62e162cf1e735e42462be1db9b4954b5a69accdf</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4qcv-qf38-5j3j"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-2850</id>
    <title>gsd-2023-2850</title>
    <updated>2026-10-03T06:09:51.205102+00:00</updated>
    <content>gsd-2023-2850</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-2850"/>
  </entry>
</feed>
