<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T09:56:54.964386+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/drupal-contrib-2025-108</id>
    <title>DRUPAL-CONTRIB-2025-108</title>
    <updated>2026-10-07T09:56:54.967839+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist:https://packages.drupal.org/8: drupal/access_code</p>
<p>This module enables users to sign in with an access code instead of entering user names and passwords. When users are allowed to pick their own access codes, they can guess other users' access codes based on the fact that access codes need to be unique and the system warns if the code of their choice is taken.</p>
<p>This vulnerability is mitigated by the fact that an attacker must have a role with the "change own access code" permission.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/drupal-contrib-2025-108"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-257169</id>
    <title>EUVD-2026-257169</title>
    <updated>2026-10-07T09:56:54.967899+00:00</updated>
    <content>EUVD-2026-257169</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-257169"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-10928</id>
    <title>fkie_cve-2025-10928</title>
    <updated>2026-10-07T09:56:54.967915+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force.This issue affects Access code: from 0.0.0 before 2.0.5.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-10928"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-27mc-9399-r9mx</id>
    <title>GHSA-27mc-9399-r9mx — Drupal Access code allows Brute Force Attempts</title>
    <updated>2026-10-07T09:56:54.967938+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: drupal/access_code</p>
<p>Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force. This issue affects Access code: from 0.0.0 before 2.0.5.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-27mc-9399-r9mx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2126</id>
    <title>WID-SEC-W-2025-2126 — Drupal Module: Mehrere Schwachstellen</title>
    <updated>2026-10-07T09:56:54.967958+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Drupal Module ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen, um Sicherheitsvorkehrungen zu umgehen, und um falsche Informationen darzustellen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2126"/>
  </entry>
</feed>
