<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:53:13.801013+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-04902</id>
    <title>bdu:2025-04902</title>
    <updated>2026-10-02T23:53:13.873491+00:00</updated>
    <content>bdu:2025-04902</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-04902"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0301</id>
    <title>certfr-2025-avi-0301 — De multiples vulnérabilités ont été découvertes dans les produits Palo Alto Networks. Certaines d'entre elles permetten…</title>
    <updated>2026-10-02T23:53:13.873563+00:00</updated>
    <content>certfr-2025-avi-0301</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0301"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-228782</id>
    <title>EUVD-2026-228782</title>
    <updated>2026-10-02T23:53:13.873595+00:00</updated>
    <content>EUVD-2026-228782</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-228782"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-0126</id>
    <title>fkie_cve-2025-0126</title>
    <updated>2026-10-02T23:53:13.873621+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When configured using SAML, a session fixation vulnerability in the GlobalProtect™ login enables an attacker to impersonate a legitimate authorized user and perform actions as that GlobalProtect user. This requires the legitimate user to first click on a malicious link provided by the attacker.</p>
<p>The SAML login for the PAN-OS® management interface is not affected. Additionally, this issue does not affect Cloud NGFW and all Prisma® Access instances are proactively patched.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-0126"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6whh-pf24-fvfr</id>
    <title>GHSA-6whh-pf24-fvfr</title>
    <updated>2026-10-02T23:53:13.873654+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When configured using SAML, a session fixation vulnerability in the GlobalProtect™ login enables an attacker to impersonate a legitimate authorized user and perform actions as that GlobalProtect user. This requires the legitimate user to first click on a malicious link provided by the attacker.</p>
<p>The SAML login for the PAN-OS® management interface is not affected. Additionally, this issue does not affect Cloud NGFW and all Prisma® Access instances are proactively patched.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6whh-pf24-fvfr"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-24-338-02</id>
    <title>ICSA-24-338-02 — Siemens RUGGEDCOM APE1808</title>
    <updated>2026-10-02T23:53:13.873674+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to gain PAN-OS administrator privileges to perform administrative actions, tamper with the configuration, or exploit other authenticated privilege escalation vulnerabilities like CVE-2024-9474. A null pointer dereference vulnerability in the GlobalProtect gateway in Palo Alto Networks PAN-OS software enables an unauthenticated attacker to stop the GlobalProtect service on the firewall by sending a specially crafted packet that causes a denial of service (DoS) condition. Repeated attempts to trigger this condition result in the firewall entering maintenance mode. A command injection vulnerability in Palo Alto Networks PAN-OS software enables an authenticated administrator to bypass system restrictions in the management plane and delete files on the firewall. A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall. Repeated attempts to trigger this condition will cause the firewall to enter maintenance mode. A privilege escalation vulnerability in Palo Alto Networks PAN-OS software allows a PAN-OS administrator with access to the management web interface to perform actions on the firewall with root privileges. An authentication bypass in the Palo Alto Networks…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-24-338-02"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0780</id>
    <title>WID-SEC-W-2025-0780 — PaloAlto Networks PAN-OS: Mehrere Schwachstellen</title>
    <updated>2026-10-02T23:53:13.873730+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in PaloAlto Networks PAN-OS ausnutzen, um Informationen preiszugeben, erhöhte Rechte zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren und einen Denial-of-Service-Zustand zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0780"/>
  </entry>
</feed>
