<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-09T15:34:51.799246+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-04794</id>
    <title>bdu:2026-04794</title>
    <updated>2026-10-09T15:34:51.880947+00:00</updated>
    <content>bdu:2026-04794</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-04794"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cisco-sa-nd-ssrf-naen4o7r</id>
    <title>cisco-sa-nd-ssrf-NAen4O7r — Cisco Nexus Dashboard and Nexus Dashboard Insights Server-Side Request Forgery Vulnerability</title>
    <updated>2026-10-09T15:34:51.880985+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability in Cisco Nexus Dashboard and Cisco Nexus Dashboard Insights could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack through an affected device.

This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by persuading an authenticated user of the device management interface to click a crafted link. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected device to an attacker-controlled server. The attacker could then execute arbitrary script code in the context of the affected interface or access sensitive browser-based information.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cisco-sa-nd-ssrf-naen4o7r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278530</id>
    <title>EUVD-2026-278530</title>
    <updated>2026-10-09T15:34:51.881021+00:00</updated>
    <content>EUVD-2026-278530</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278530"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-20041</id>
    <title>fkie_cve-2026-20041</title>
    <updated>2026-10-09T15:34:51.881035+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability in Cisco Nexus Dashboard and Cisco Nexus Dashboard Insights could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack through an affected device.

This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by persuading an authenticated user of the device management interface to click a crafted link. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected device to an attacker-controlled server. The attacker could then execute arbitrary script code in the context of the affected interface or access sensitive browser-based information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-20041"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-24qq-7528-p6pc</id>
    <title>GHSA-24qq-7528-p6pc</title>
    <updated>2026-10-09T15:34:51.881060+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A vulnerability in Cisco Nexus Dashboard and Cisco Nexus Dashboard Insights could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack through an affected device.</p>
<p>This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by persuading an authenticated user of the device management interface to click a crafted link. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected device to an attacker-controlled server. The attacker could then execute arbitrary script code in the context of the affected interface or access sensitive browser-based information.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-24qq-7528-p6pc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0105</id>
    <title>NCSC-2026-0105 — Kwetsbaarheden verholpen in Cisco Nexus Dashboard en Nexus Dashboard Insights</title>
    <updated>2026-10-09T15:34:51.881080+00:00</updated>
    <content>NCSC-2026-0105</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0105"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0955</id>
    <title>WID-SEC-W-2026-0955 — Cisco Nexus Dashboard und Insights: Mehrere Schwachstellen</title>
    <updated>2026-10-09T15:34:51.881096+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein kann mehrere Schwachstellen in Cisco Nexus Dashboard und Insights ausnutzen, um Dateien zu manipulieren oder vertrauliche Informationen offenzulegen, was möglicherweise weitere Angriffe ermöglicht.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0955"/>
  </entry>
</feed>
