<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T06:18:13.566352+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-06440</id>
    <title>bdu:2024-06440</title>
    <updated>2026-10-04T06:18:13.655382+00:00</updated>
    <content>bdu:2024-06440</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-06440"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-199823</id>
    <title>EUVD-2026-199823</title>
    <updated>2026-10-04T06:18:13.655454+00:00</updated>
    <content>EUVD-2026-199823</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-199823"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-36453</id>
    <title>fkie_cve-2024-36453</title>
    <updated>2026-10-04T06:18:13.655493+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability exists in session_login.cgi of Webmin versions prior to 1.970 and Usermin versions prior to 1.820. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product. As a result, a webpage may be altered or sensitive information such as a credential may be disclosed.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-36453"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w2jv-599h-mr48</id>
    <title>GHSA-w2jv-599h-mr48</title>
    <updated>2026-10-04T06:18:13.655568+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability exists in session_login.cgi of Webmin versions prior to 1.970 and Usermin versions prior to 1.820. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product. As a result, a webpage may be altered or sensitive information such as a credential may be disclosed.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w2jv-599h-mr48"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2024-000059</id>
    <title>jvndb-2024-000059</title>
    <updated>2026-10-04T06:18:13.655619+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple Webmin products contain multiple vulnerabilities listed below.
  * sysinfo.cgi is vulnerable to cross-site scripting (CWE-79)
    CVE-2024-36450
  * session_login.cgi is vulnerable to cross-site scripting (CWE-79)
    CVE-2024-36453
  * ajaxterm module is vulnerable to improper handling of insufficient permissions or privileges (CWE-280)
    CVE-2024-36451
  * ajaxterm module is vulnerable to cross-site request forgery (CWE-352)
    CVE-2024-36452

CVE-2024-36450, CVE-2024-36451, CVE-2024-36452
Toshitsugu Yoneyama of Mitsui Bussan Secure Directions, Inc. reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.

CVE-2024-36453
hibiki moriyama of STNet, Incorporated reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2024-000059"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1545</id>
    <title>WID-SEC-W-2024-1545 — Webmin: Mehrere Schwachstellen</title>
    <updated>2026-10-04T06:18:13.655670+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter Angreifer kann mehrere Schwachstellen in Webmin ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen, Sicherheitsmaßnahmen zu umgehen und seine Rechte zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1545"/>
  </entry>
</feed>
