<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T07:23:32.606166+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0692</id>
    <title>certfr-2025-avi-0692 — De multiples vulnérabilités ont été découvertes dans Ruby on Rails. Elles permettent à un attaquant de provoquer une ex…</title>
    <updated>2026-10-04T07:23:32.613592+00:00</updated>
    <content>certfr-2025-avi-0692</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0692"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-249815</id>
    <title>EUVD-2026-249815</title>
    <updated>2026-10-04T07:23:32.613631+00:00</updated>
    <content>EUVD-2026-249815</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-249815"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-55193</id>
    <title>fkie_cve-2025-55193</title>
    <updated>2026-10-04T07:23:32.613646+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar methods may be logged without escaping. If this is directly to the terminal it may include unescaped ANSI sequences. This issue has been patched in versions 7.1.5.2, 7.2.2.2, and 8.0.2.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-55193"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-76r7-hhxj-r776</id>
    <title>GHSA-76r7-hhxj-r776 — Active Record logging vulnerable to ANSI escape injection</title>
    <updated>2026-10-04T07:23:32.613674+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> RubyGems: activerecord</p>
<p>This vulnerability has been assigned the CVE identifier CVE-2025-55193</p>
<p>### Impact
The ID passed to `find` or similar methods may be logged without escaping. If this is directly to the terminal it may include unescaped ANSI sequences.</p>
<p>### Releases
The fixed releases are available at the normal locations.</p>
<p>### Credits</p>
<p>Thanks to [lio346](https://hackerone.com/lio346) from Unit 515 of OPSWAT for reporting this vulnerability</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-76r7-hhxj-r776"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15479-1</id>
    <title>openSUSE-SU-2025:15479-1 — ruby3.4-rubygem-activerecord-8.0-8.0.1-2.1 on GA media</title>
    <updated>2026-10-04T07:23:32.613702+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ruby3.4-rubygem-activerecord-8.0-8.0.1-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2025:15479-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-55193</id>
    <title>UBUNTU-CVE-2025-55193</title>
    <updated>2026-10-04T07:23:32.613719+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: rails, Ubuntu:Pro:18.04:LTS: rails, Ubuntu:Pro:20.04:LTS: rails, Ubuntu:Pro:22.04:LTS: rails, Ubuntu:24.04:LTS: rails, Ubuntu:25.10: rails, Ubuntu:26.04:LTS: rails</p>
<p>Active Record connects classes to relational database tables. Prior to versions 7.1.5.2, 7.2.2.2, and 8.0.2.1, the ID passed to find or similar methods may be logged without escaping. If this is directly to the terminal it may include unescaped ANSI sequences. This issue has been patched in versions 7.1.5.2, 7.2.2.2, and 8.0.2.1.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-55193"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1822</id>
    <title>WID-SEC-W-2025-1822 — Ruby on Rails: Mehrere Schwachstellen</title>
    <updated>2026-10-04T07:23:32.613746+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Ruby on Rails ausnutzen, um beliebigen Programmcode auszuführen und Daten zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1822"/>
  </entry>
</feed>
