<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T12:05:37.219297+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2025:9329</id>
    <title>ALSA-2025:9329 — Important: perl-YAML-LibYAML security update</title>
    <updated>2026-10-05T12:05:37.475490+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: perl-YAML-LibYAML</p>
<p>Kirill Siminov's "libyaml" is arguably the best YAML implementation. The C library is written precisely to the YAML 1.1 specification. It was originally bound to Python and was later bound to Ruby.</p>
<p>Security Fix(es):</p>
<p>* yaml-libyaml: LibYAML Perl File Modification Vulnerability (CVE-2025-40908)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2025:9329"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-08363</id>
    <title>bdu:2025-08363</title>
    <updated>2026-10-05T12:05:37.475596+00:00</updated>
    <content>bdu:2025-08363</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-08363"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-242291</id>
    <title>EUVD-2026-242291</title>
    <updated>2026-10-05T12:05:37.475614+00:00</updated>
    <content>EUVD-2026-242291</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-242291"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-40908</id>
    <title>fkie_cve-2025-40908</title>
    <updated>2026-10-05T12:05:37.475626+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-40908"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-jh9m-3m95-c6hp</id>
    <title>GHSA-jh9m-3m95-c6hp</title>
    <updated>2026-10-05T12:05:37.475647+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-jh9m-3m95-c6hp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1591</id>
    <title>OESA-2025-1591 — perl-YAML-LibYAML security update</title>
    <updated>2026-10-05T12:05:37.475661+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP4: perl-YAML-LibYAML, openEuler:24.03-LTS: perl-YAML-LibYAML, openEuler:24.03-LTS-SP1: perl-YAML-LibYAML, openEuler:20.03-LTS-SP4: perl-YAML-LibYAML, openEuler:22.03-LTS-SP3: perl-YAML-LibYAML</p>
<p>Security Fix(es):</p>
<p>A vulnerability was found in TINITA YAML-LibYAML up to 0.902.x on Perl. It has been classified as problematic.CWE is classifying the issue as CWE-552. The product makes files or directories accessible to unauthorized actors, even though they should not be.This is going to have an impact on confidentiality.Upgrading to version 0.903.0 eliminates this vulnerability. Applying a patch is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.(CVE-2025-40908)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1591"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15261-1</id>
    <title>openSUSE-SU-2025:15261-1 — perl-YAML-LibYAML-0.904.0-2.1 on GA media</title>
    <updated>2026-10-05T12:05:37.475691+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>perl-YAML-LibYAML-0.904.0-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2025:15261-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2025:9338</id>
    <title>RHSA-2025:9338 — Red Hat Security Advisory: perl-YAML-LibYAML security update</title>
    <updated>2026-10-05T12:05:37.475708+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>yaml-libyaml: LibYAML Perl File Modification Vulnerability</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2025:9338"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:01885-1</id>
    <title>SUSE-SU-2025:01885-1 — Security update for perl-YAML-LibYAML</title>
    <updated>2026-10-05T12:05:37.475722+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for perl-YAML-LibYAML</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:01885-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-40908</id>
    <title>UBUNTU-CVE-2025-40908</title>
    <updated>2026-10-05T12:05:37.475735+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: libyaml-libyaml-perl, Ubuntu:18.04:LTS: libyaml-libyaml-perl, Ubuntu:20.04:LTS: libyaml-libyaml-perl, Ubuntu:22.04:LTS: libyaml-libyaml-perl, Ubuntu:24.04:LTS: libyaml-libyaml-perl</p>
<p>YAML-LibYAML prior to 0.903.0 for Perl uses 2-args open, allowing existing files to be modified</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-40908"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1370</id>
    <title>WID-SEC-W-2025-1370 — Red Hat Enterprise Linux (yaml-libyam): Schwachstelle ermöglicht Manipulation von Dateien</title>
    <updated>2026-10-05T12:05:37.475756+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1370"/>
  </entry>
</feed>
