<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T18:06:42.350766+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-10624</id>
    <title>bdu:2025-10624</title>
    <updated>2026-10-05T18:06:42.355548+00:00</updated>
    <content>bdu:2025-10624</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-10624"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0676</id>
    <title>certfr-2025-avi-0676 — De multiples vulnérabilités ont été découvertes dans les produits Schneider Electric. Certaines d'entre elles permetten…</title>
    <updated>2026-10-05T18:06:42.355581+00:00</updated>
    <content>certfr-2025-avi-0676</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0676"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-250265</id>
    <title>EUVD-2026-250265</title>
    <updated>2026-10-05T18:06:42.355601+00:00</updated>
    <content>EUVD-2026-250265</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-250265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-54927</id>
    <title>fkie_cve-2025-54927</title>
    <updated>2026-10-05T18:06:42.355613+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause unauthorized access to sensitive files when an authenticated attackers uses a crafted path input that is processed by the system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-54927"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xg24-qhg2-gj63</id>
    <title>GHSA-xg24-qhg2-gj63</title>
    <updated>2026-10-05T18:06:42.355640+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause unauthorized access to sensitive files when an authenticated attackers uses a crafted path input that is processed by the system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xg24-qhg2-gj63"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-224-03</id>
    <title>ICSA-25-224-03 — Schneider Electric EcoStruxure Power Monitoring Expert</title>
    <updated>2026-10-05T18:06:42.355656+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in its EcoStruxure Power Monitoring Expert (PME) and EcoStruxure Power Operation (EPO) and EcoStruxure Power SCADA Operation (PSO) products. EcoStruxure Power Monitoring Expert (PME) is an on-premises software used to help power critical and energy-intensive facilities maximize uptime and operational efficiency. Note: There are some instances of PME being deployed in a Managed Service model. EcoStruxure Power Operation (EPO) and EcoStruxure Power SCADA Operation (PSO) are on-premises software offers that provides a single platform to monitor and control medium and lower power systems. Failure to apply the remediation and/or mitigations provided below may risk deserialization of untrusted data, server-side request forgery and/or path traversal that could result in remote code execution, and/or unauthorized access to sensitive data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-224-03"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sevd-2025-224-02</id>
    <title>SEVD-2025-224-02 — EcoStruxure™ Power Monitoring Expert Software &amp; EcoStruxure™ Power Operation (EPO) and EcoStruxure™ Power SCADA Operati…</title>
    <updated>2026-10-05T18:06:42.355680+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Schneider Electric is aware of multiple vulnerabilities in its EcoStruxure™ Power Monitoring Expert (PME) and
EcoStruxure™ Power Operation (EPO) and EcoStruxure™ Power SCADA Operation (PSO) products.
EcoStruxure™ Power Monitoring Expert (PME) is an on-premises software used to help power critical and
energy-intensive facilities maximize uptime and operational efficiency. Note: There are some instances of PME
being deployed in a Managed Service model.
EcoStruxure™ Power Operation (EPO) and EcoStruxure™ Power SCADA Operation (PSO) are on-premises
software offers that provides a single platform to monitor and control medium and lower power systems.
Failure to apply the remediation and/or mitigations provided below may risk deserialization of untrusted data,
server-side request forgery and/or path traversal that could result in remote code execution, and/or
unauthorized access to sensitive data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sevd-2025-224-02"/>
  </entry>
</feed>
