<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T02:39:19.221970+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-242052</id>
    <title>EUVD-2026-242052</title>
    <updated>2026-10-05T02:39:19.288440+00:00</updated>
    <content>EUVD-2026-242052</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-242052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-23348</id>
    <title>fkie_cve-2024-23348</title>
    <updated>2026-10-05T02:39:19.288474+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper input validation vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions prior to Ver.3.0.29, Ver.2.11.x series versions prior to Ver.2.11.58, Ver.2.10.x series versions prior to Ver.2.10.50, and Ver.2.9.0 and earlier allows a remote authenticated attacker to execute arbitrary JavaScript code by uploading a specially crafted SVG file.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-23348"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6253-5q75-wc4w</id>
    <title>GHSA-6253-5q75-wc4w</title>
    <updated>2026-10-05T02:39:19.288505+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper input validation vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions prior to Ver.3.0.29, Ver.2.11.x series versions prior to Ver.2.11.58, Ver.2.10.x series versions prior to Ver.2.10.50, and Ver.2.9.0 and earlier allows a remote authenticated attacker to execute arbitrary JavaScript code by uploading a specially crafted SVG file.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6253-5q75-wc4w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-23348</id>
    <title>gsd-2024-23348</title>
    <updated>2026-10-05T02:39:19.288537+00:00</updated>
    <content>gsd-2024-23348</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-23348"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2024-000011</id>
    <title>jvndb-2024-000011</title>
    <updated>2026-10-05T02:39:19.288554+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>a-blog cms provided by appleple inc. contains multiple vulnerabilities listed below.&lt;ul&gt;&lt;li&gt;Improper input validation (CWE-20) - CVE-2024-23180&lt;/li&gt;&lt;li&gt;Cross-site scripting (CWE-79) - CVE-2024-23181&lt;/li&gt;&lt;li&gt;Relative path traversal (CWE-23) - CVE-2024-23182&lt;/li&gt;&lt;li&gt;Cross-site scripting (CWE-79) - CVE-2024-23183&lt;/li&gt;&lt;li&gt;Improper input validation (CWE-20) - CVE-2024-23348&lt;/li&gt;&lt;li&gt;Cross-site scripting (CWE-79) - CVE-2024-23782&lt;/li&gt;&lt;/ul&gt;


CVE-2024-23180
Naoya Miyaguchi reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2024-23181
Kentaro Ishii of GMO Cybersecurity by Ierae, Inc. reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2024-23182, CVE-2024-23183
Yuji Tounai of Mitsui Bussan Secure Directions, Inc. reported these vulnerabilities to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2024-23348, CVE-2024-23782
Yuta Morioka of Information Science College reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2024-000011"/>
  </entry>
</feed>
