<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:51:42.063398+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/drupal-contrib-2024-027</id>
    <title>DRUPAL-CONTRIB-2024-027</title>
    <updated>2026-10-02T20:51:42.066558+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist:https://packages.drupal.org/8: drupal/opigno_group_manager</p>
<p>The Opigno group manager project is related to Opigno LMS distribution. It allows to build the contents of learning paths, by combining together modules, courses, and other activities, ordering them, and defining conditional rules for the transitions from one step to the next one.</p>
<p>An administration form allows execution of arbitrary code.</p>
<p>This issue is mitigated by several factors. First, it requires the attacker have the permission "update group learning\_path". Additionally, it requires several steps and depends on other data in the system to be in place.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/drupal-contrib-2024-027"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-210148</id>
    <title>EUVD-2026-210148</title>
    <updated>2026-10-02T20:51:42.066624+00:00</updated>
    <content>EUVD-2026-210148</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-210148"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-13263</id>
    <title>fkie_cve-2024-13263</title>
    <updated>2026-10-02T20:51:42.066644+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue affects Opigno group manager: from 0.0.0 before 3.1.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-13263"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6j67-4cmx-rgw8</id>
    <title>GHSA-6j67-4cmx-rgw8</title>
    <updated>2026-10-02T20:51:42.066668+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue affects Opigno group manager: from 0.0.0 before 3.1.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6j67-4cmx-rgw8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1791</id>
    <title>WID-SEC-W-2024-1791 — Drupal: Mehrere Schwachstellen ermöglichen Codeausführung und Cross Site Scripting</title>
    <updated>2026-10-02T20:51:42.066683+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Drupal ausnutzen, um beliebigen Programmcode auszuführen und einen Cross-Site-Scripting-Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1791"/>
  </entry>
</feed>
