<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:53:07.005128+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-13871</id>
    <title>bdu:2025-13871</title>
    <updated>2026-10-02T20:53:07.013925+00:00</updated>
    <content>bdu:2025-13871</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-13871"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0621</id>
    <title>certfr-2025-avi-0621 — De multiples vulnérabilités ont été découvertes dans Tenable Identity Exposure. Certaines d'entre elles permettent à un…</title>
    <updated>2026-10-02T20:53:07.013961+00:00</updated>
    <content>certfr-2025-avi-0621</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0621"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-340576</id>
    <title>EUVD-2026-340576</title>
    <updated>2026-10-02T20:53:07.013981+00:00</updated>
    <content>EUVD-2026-340576</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-340576"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-4748</id>
    <title>fkie_cve-2025-4748</title>
    <updated>2026-10-02T20:53:07.013993+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.</p>
<p>This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-4748"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-4748</id>
    <title>msrc_CVE-2025-4748 — Absolute path traversal in zip:unzip/1,2</title>
    <updated>2026-10-02T20:53:07.014025+00:00</updated>
    <content>msrc_CVE-2025-4748</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-4748"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1767</id>
    <title>OESA-2025-1767 — erlang security update</title>
    <updated>2026-10-02T20:53:07.014042+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP1: erlang, openEuler:24.03-LTS-SP2: erlang, openEuler:20.03-LTS-SP4: erlang, openEuler:22.03-LTS-SP3: erlang, openEuler:22.03-LTS-SP4: erlang, openEuler:24.03-LTS: erlang</p>
<p>Erlang is a general-purpose programming language and runtime
environment. Erlang has built-in support for concurrency, distribution
and fault tolerance. Erlang is used in several large telecommunication
systems from Ericsson.

Security Fix(es):</p>
<p>Improper Limitation of a Pathname to a Restricted Directory (&amp;apos;Path Traversal&amp;apos;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.</p>
<p>This issue affects OTP from OTP 17.0 until OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 until 7.0.1, 6.2.2.1 and 5.2.3.4.(CVE-2025-4748)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1767"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10947-1</id>
    <title>openSUSE-SU-2026:10947-1 — erlang27-27.1.3-2.1 on GA media</title>
    <updated>2026-10-02T20:53:07.014077+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>erlang27-27.1.3-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10947-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:22082-1</id>
    <title>SUSE-SU-2026:22082-1 — Security update for erlang</title>
    <updated>2026-10-02T20:53:07.014098+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for erlang</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:22082-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4748</id>
    <title>UBUNTU-CVE-2025-4748</title>
    <updated>2026-10-02T20:53:07.014114+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: erlang, Ubuntu:Pro:16.04:LTS: erlang, Ubuntu:Pro:18.04:LTS: erlang, Ubuntu:Pro:20.04:LTS: erlang, Ubuntu:22.04:LTS: erlang, Ubuntu:24.04:LTS: erlang, Ubuntu:25.10: erlang</p>
<p>Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed. This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4748"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1333</id>
    <title>WID-SEC-W-2025-1333 — Erlang/OTP: Schwachstelle ermöglicht Manipulation von Dateien</title>
    <updated>2026-10-02T20:53:07.014144+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Erlang/OTP ausnutzen, um Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1333"/>
  </entry>
</feed>
