<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:33:47.180845+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0255</id>
    <title>certfr-2026-avi-0255 — De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-02T20:33:47.193309+00:00</updated>
    <content>certfr-2026-avi-0255</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0255"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2026-13386</id>
    <title>cnvd-2026-13386</title>
    <updated>2026-10-02T20:33:47.193369+00:00</updated>
    <content>cnvd-2026-13386</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2026-13386"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-316867</id>
    <title>EUVD-2026-316867</title>
    <updated>2026-10-02T20:33:47.193395+00:00</updated>
    <content>EUVD-2026-316867</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-316867"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-40943</id>
    <title>fkie_cve-2025-40943</title>
    <updated>2026-10-02T20:33:47.193418+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly sanitize contents of trace files.

This could allow an attacker to inject code through social engineering an authorized user, who has the function right "Read diagnostics", to import a specially crafted trace file.

The malicious trace file is insufficiently sanitized and malicious code could be executed in the clients browser session and trigger PLC operations via the webserver that the legitimate user is authorized to perform.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-40943"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-v7h2-5j7f-whwh</id>
    <title>GHSA-v7h2-5j7f-whwh</title>
    <updated>2026-10-02T20:33:47.193468+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly sanitize contents of trace files. This could allow an attacker to inject code through social engineering a legitimate user to import a specially crafted trace file</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-v7h2-5j7f-whwh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-26-071-04</id>
    <title>ICSA-26-071-04 — Siemens SIMATIC</title>
    <updated>2026-10-02T20:33:47.193497+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly sanitize contents of trace files.

This could allow an attacker to inject code through social engineering an authorized user, who has the function right "Read diagnostics", to import a specially crafted trace file.

The malicious trace file is insufficiently sanitized and malicious code could be executed in the clients browser session and trigger PLC operations via the webserver that the legitimate user is authorized to perform.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-26-071-04"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0079</id>
    <title>NCSC-2026-0079 — Kwetsbaarheden verholpen in Siemens producten</title>
    <updated>2026-10-02T20:33:47.193544+00:00</updated>
    <content>NCSC-2026-0079</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0079"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-452276</id>
    <title>SSA-452276 — SSA-452276: Eval Injection Vulnerability in SIMATIC S7-1500</title>
    <updated>2026-10-02T20:33:47.193662+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Affected devices do not properly sanitize contents of trace files.

This could allow an attacker to inject code through social engineering an authorized user, who has the function right "Read diagnostics", to import a specially crafted trace file.

The malicious trace file is insufficiently sanitized and malicious code could be executed in the clients browser session and trigger PLC operations via the webserver that the legitimate user is authorized to perform.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-452276"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0652</id>
    <title>WID-SEC-W-2026-0652 — Siemens SIMATIC S7: Schwachstelle ermöglicht Cross-Site Scripting</title>
    <updated>2026-10-02T20:33:47.193697+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Siemens SIMATIC S7 ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0652"/>
  </entry>
</feed>
