<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T04:49:42.946354+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2025-09678</id>
    <title>cnvd-2025-09678</title>
    <updated>2026-10-06T04:49:42.950268+00:00</updated>
    <content>cnvd-2025-09678</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2025-09678"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-235345</id>
    <title>EUVD-2026-235345</title>
    <updated>2026-10-06T04:49:42.950309+00:00</updated>
    <content>EUVD-2026-235345</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-235345"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-43920</id>
    <title>fkie_cve-2025-43920</title>
    <updated>2026-10-06T04:49:42.950330+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GNU Mailman 2.1.39, as bundled in cPanel (and WHM), in certain external archiver configurations, allows unauthenticated attackers to execute arbitrary OS commands via shell metacharacters in an email Subject line. NOTE: multiple third parties report that they are unable to reproduce this, regardless of whether cPanel or WHM is used.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-43920"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-35m2-m3ch-fgh4</id>
    <title>GHSA-35m2-m3ch-fgh4</title>
    <updated>2026-10-06T04:49:42.950368+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GNU Mailman 2.1.39, as bundled in cPanel (and WHM), allows unauthenticated attackers to execute arbitrary OS commands via shell metacharacters in an email Subject line.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-35m2-m3ch-fgh4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-43920</id>
    <title>Withdrawn: UBUNTU-CVE-2025-43920</title>
    <updated>2026-10-06T04:49:42.950391+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: mailman, Ubuntu:18.04:LTS: mailman, Ubuntu:Pro:20.04:LTS: mailman</p>
<p>GNU Mailman 2.1.39, as bundled in cPanel (and WHM), in certain external archiver configurations, allows unauthenticated attackers to execute arbitrary OS commands via shell metacharacters in an email Subject line. NOTE: multiple third parties report that they are unable to reproduce this, regardless of whether cPanel or WHM is used.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-43920"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0858</id>
    <title>WID-SEC-W-2025-0858 — cPanel/WHM: Mehrere Schwachstellen</title>
    <updated>2026-10-06T04:49:42.950434+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in cPanel/WHM ausnutzen, um Informationen offenzulegen, um beliebige Kommandos auszuführen und um Sicherheitsmechanismen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0858"/>
  </entry>
</feed>
