<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T18:12:17.708368+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0512</id>
    <title>certfr-2025-avi-0512 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T18:12:17.814692+00:00</updated>
    <content>certfr-2025-avi-0512</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0512"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-bx02469</id>
    <title>Withdrawn: CLEANSTART-2026-BX02469 — Security fixes in jitsucom-jitsu 2.10.0-r0</title>
    <updated>2026-10-03T18:12:17.814742+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: jitsucom-jitsu</p>
<p>Package jitsucom-jitsu version 2.10.0-r0 fixes 5 vulnerabilities: CVE-2026-3449, ghsa-vpq2-c234-7xj6, ghsa-c7w3-x93f-qmm8, CVE-2024-53382, ghsa-x7hr-w5r2-h6wg</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-bx02469"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-220336</id>
    <title>EUVD-2026-220336</title>
    <updated>2026-10-03T18:12:17.814778+00:00</updated>
    <content>EUVD-2026-220336</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-220336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-53382</id>
    <title>fkie_cve-2024-53382</title>
    <updated>2026-10-03T18:12:17.814793+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be shadowed by attacker-injected HTML elements.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-53382"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-x7hr-w5r2-h6wg</id>
    <title>GHSA-x7hr-w5r2-h6wg — PrismJS DOM Clobbering vulnerability</title>
    <updated>2026-10-03T18:12:17.814817+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: prismjs</p>
<p>Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be shadowed by attacker-injected HTML elements.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-x7hr-w5r2-h6wg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2025:11749</id>
    <title>RHSA-2025:11749 — Red Hat Security Advisory: Updated 8.1 container image is now available: security and bug fix update</title>
    <updated>2026-10-03T18:12:17.814839+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>moby: classic builder cache poisoning golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html prismjs: DOM Clobbering vulnerability within the Prism library's prism-autoloader plugin crypto/x509: ParsePKCS1PrivateKey panic with partial keys in crypto/x509 golang.org/x/oauth2/jws: Unexpected memory consumption during token parsing in golang.org/x/oauth2/jws net/http: Request smuggling due to acceptance of invalid chunked data in net/http golang-jwt/jwt: jwt-go allows excessive memory allocation during header parsing</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2025:11749"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-53382</id>
    <title>UBUNTU-CVE-2024-53382</title>
    <updated>2026-10-03T18:12:17.814871+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: node-prismjs, Ubuntu:22.04:LTS: node-prismjs, Ubuntu:24.04:LTS: node-prismjs, Ubuntu:25.10: node-prismjs, Ubuntu:26.04:LTS: node-prismjs</p>
<p>Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be shadowed by attacker-injected HTML elements.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-53382"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1399</id>
    <title>WID-SEC-W-2025-1399 — IBM Maximo Asset Management: Schwachstelle ermöglicht Cross-Site Scripting</title>
    <updated>2026-10-03T18:12:17.814898+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in IBM Maximo Asset Management ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1399"/>
  </entry>
</feed>
