<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T17:09:03.427120+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-217342</id>
    <title>EUVD-2026-217342</title>
    <updated>2026-10-03T17:09:03.431056+00:00</updated>
    <content>EUVD-2026-217342</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-217342"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27285</id>
    <title>fkie_cve-2024-27285</title>
    <updated>2026-10-03T17:09:03.431086+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>YARD is a Ruby Documentation tool. The "frames.html" file within the Yard Doc's generated documentation is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user input within the JavaScript segment of the "frames.erb" template file.  This vulnerability is fixed in 0.9.36.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-27285"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8mq4-9jjh-9xrc</id>
    <title>GHSA-8mq4-9jjh-9xrc — YARD's default template vulnerable to Cross-site Scripting in generated frames.html</title>
    <updated>2026-10-03T17:09:03.431119+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> RubyGems: yard</p>
<p>### Summary
The "frames.html" file within the Yard Doc's generated documentation is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user input within the JavaScript segment of the "frames.erb" template file.</p>
<p>### Details
The vulnerability stems from mishandling user-controlled data retrieved from the URL hash in the embedded JavaScript code within the "frames.erb" template file. Specifically, the script lacks proper sanitization of the hash data before utilizing it to establish the top-level window's location. This oversight permits an attacker to inject malicious JavaScript payloads through carefully crafted URLs.</p>
<p>Snippet from "frames.erb":
(v0.9.34)
```erb
&lt;script type="text/javascript"&gt;
  var match = unescape(window.location.hash).match(/^#!(.+)/);
  var name = match ? match[1] : '&lt;%= url_for_main %&gt;';
  name = name.replace(/^(\w+):\/\//, '').replace(/^\/\//, '');
  window.top.location = name;
&lt;/script&gt;
```</p>
<p>(v0.9.35)
```erb
&lt;script type="text/javascript"&gt;
  var match = decodeURIComponent(window.location.hash).match(/^#!(.+)/);
  var name = match ? match[1] : '&lt;%= url_for_main %&gt;';
  name = name.replace(/^((\w*):)?[\/\\]*/gm, '').trim();
  window.top.location.replace(name)
&lt;/script&gt;
```</p>
<p>### PoC (Proof of Concept)
To exploit this vulnerability:
1. Gain access to the generated Yard Doc.
2. Locate and access the "frames.html" file.
3. Construct a URL containing the malicious payload in the hash segment, for instance: `#!javascript:xss` fo…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8mq4-9jjh-9xrc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-27285</id>
    <title>gsd-2024-27285</title>
    <updated>2026-10-03T17:09:03.431166+00:00</updated>
    <content>gsd-2024-27285</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-27285"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-1256</id>
    <title>OESA-2024-1256 — rubygem-yard security update</title>
    <updated>2026-10-03T17:09:03.431181+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: rubygem-yard, openEuler:20.03-LTS-SP4: rubygem-yard, openEuler:22.03-LTS: rubygem-yard, openEuler:22.03-LTS-SP1: rubygem-yard, openEuler:22.03-LTS-SP2: rubygem-yard, openEuler:22.03-LTS-SP3: rubygem-yard</p>
<p>YARD is a documentation generation tool for the Ruby programming language. It enables the user to generate consistent, usable documentation that can be exported to a number of formats very easily, and also supports extending for custom Ruby constructs such as custom class level definitions.

Security Fix(es):

YARD is a Ruby Documentation tool. The &amp;quot;frames.html&amp;quot; file within the Yard Doc&amp;apos;s generated documentation is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user input within the JavaScript segment of the &amp;quot;frames.erb&amp;quot; template file.  This vulnerability is fixed in 0.9.36.(CVE-2024-27285)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-1256"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27285</id>
    <title>UBUNTU-CVE-2024-27285</title>
    <updated>2026-10-03T17:09:03.431224+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: yard, Ubuntu:Pro:18.04:LTS: yard, Ubuntu:20.04:LTS: yard, Ubuntu:22.04:LTS: yard</p>
<p>YARD is a Ruby Documentation tool. The "frames.html" file within the Yard Doc's generated documentation is vulnerable to Cross-Site Scripting (XSS) attacks due to inadequate sanitization of user input within the JavaScript segment of the "frames.erb" template file.  This vulnerability is fixed in 0.9.36.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27285"/>
  </entry>
</feed>
