<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T18:04:25.643342+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-10463</id>
    <title>bdu:2024-10463</title>
    <updated>2026-10-04T18:04:25.880403+00:00</updated>
    <content>bdu:2024-10463</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-10463"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2024-10524</id>
    <title>BELL-CVE-2024-10524</title>
    <updated>2026-10-04T18:04:25.880445+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: wget, Alpaquita:stream: wget</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2024-10524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</id>
    <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-04T18:04:25.880476+00:00</updated>
    <content>certfr-2025-avi-0969</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2025-08336</id>
    <title>cnvd-2025-08336</title>
    <updated>2026-10-04T18:04:25.880493+00:00</updated>
    <content>cnvd-2025-08336</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2025-08336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-224329</id>
    <title>EUVD-2026-224329</title>
    <updated>2026-10-04T18:04:25.880505+00:00</updated>
    <content>EUVD-2026-224329</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-224329"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-10524</id>
    <title>fkie_cve-2024-10524</title>
    <updated>2026-10-04T18:04:25.880515+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-10524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mqrm-h2pw-9j9r</id>
    <title>GHSA-mqrm-h2pw-9j9r</title>
    <updated>2026-10-04T18:04:25.880539+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mqrm-h2pw-9j9r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2024-10524</id>
    <title>msrc_CVE-2024-10524 — GNU Wget is vulnerable to an SSRF attack when accessing partially-user-controlled shorthand URLs</title>
    <updated>2026-10-04T18:04:25.880553+00:00</updated>
    <content>msrc_CVE-2024-10524</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2024-10524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2497</id>
    <title>OESA-2024-2497 — wget security update</title>
    <updated>2026-10-04T18:04:25.880569+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: wget, openEuler:20.03-LTS-SP4: wget, openEuler:22.03-LTS-SP1: wget, openEuler:24.03-LTS: wget, openEuler:22.03-LTS-SP4: wget</p>
<p>GNU Wget is a free software package for retrieving files using HTTP, HTTPS, FTP and FTPS the most widely-used Internet protocols. It is a non-interactive commandline tool, so it may easily be called from scripts, cron jobs, terminals without X-Windows support, etc.

Security Fix(es):

Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.(CVE-2024-10524)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2497"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14492-1</id>
    <title>openSUSE-SU-2024:14492-1 — wget-1.25.0-1.1 on GA media</title>
    <updated>2026-10-04T18:04:25.880598+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>wget-1.25.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:14492-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:4138-1</id>
    <title>SUSE-SU-2024:4138-1 — Security update for wget</title>
    <updated>2026-10-04T18:04:25.880614+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for wget</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:4138-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-10524</id>
    <title>UBUNTU-CVE-2024-10524</title>
    <updated>2026-10-04T18:04:25.880629+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: wget, Ubuntu:Pro:16.04:LTS: wget, Ubuntu:Pro:18.04:LTS: wget, Ubuntu:Pro:20.04:LTS: wget, Ubuntu:22.04:LTS: wget, Ubuntu:24.04:LTS: wget, Ubuntu:25.10: wget</p>
<p>Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-10524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-053</id>
    <title>VDE-2025-053 — Phoenix Contact: Multiple Vulnerabilities in PLCnext Firmware</title>
    <updated>2026-10-04T18:04:25.880654+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-053"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3487</id>
    <title>WID-SEC-W-2024-3487 — wget: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen und Offenlegung von Informationen</title>
    <updated>2026-10-04T18:04:25.880697+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in wget ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3487"/>
  </entry>
</feed>
