<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T03:41:13.419353+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-349423</id>
    <title>EUVD-2026-349423</title>
    <updated>2026-10-04T03:41:13.422197+00:00</updated>
    <content>EUVD-2026-349423</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-349423"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-17600</id>
    <title>fkie_cve-2026-17600</title>
    <updated>2026-10-04T03:41:13.422227+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sonatype Nexus Repository 3 did not immediately terminate a user's active login session or revoke their cached permissions when that user's account was deleted, deactivated, or had its password changed. A user whose account was already logged in at the time of one of these actions could continue using their existing session to interact with the repository as though the account were still active, until that session independently expired. Depending on the permissions previously held, this could allow continued unauthorized access to read, modify, or delete repository content after access was intended to be revoked.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-17600"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9pmx-p77j-955r</id>
    <title>GHSA-9pmx-p77j-955r</title>
    <updated>2026-10-04T03:41:13.422260+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sonatype Nexus Repository 3 did not immediately terminate a user's active login session or revoke their cached permissions when that user's account was deleted, deactivated, or had its password changed. A user whose account was already logged in at the time of one of these actions could continue using their existing session to interact with the repository as though the account were still active, until that session independently expired. Depending on the permissions previously held, this could allow continued unauthorized access to read, modify, or delete repository content after access was intended to be revoked.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9pmx-p77j-955r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2713</id>
    <title>WID-SEC-W-2026-2713 — Sonatype Nexus Repository Manager: Mehrere Schwachstellen</title>
    <updated>2026-10-04T03:41:13.422280+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Sonatype Nexus Repository Manager ausnutzen, um Daten offenzulegen oder zu Manipulieren, Code auszuführen oder Rechte zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2713"/>
  </entry>
</feed>
