<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T11:41:54.892904+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-369557</id>
    <title>EUVD-2026-369557</title>
    <updated>2026-10-02T11:41:54.897634+00:00</updated>
    <content>EUVD-2026-369557</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-369557"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-27547</id>
    <title>fkie_cve-2026-27547</title>
    <updated>2026-10-02T11:41:54.897669+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_menu_info endpoint using valid user or operator credentials allowing execution of commands with root privileges on the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-27547"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3237-x8jg-4g4c</id>
    <title>GHSA-3237-x8jg-4g4c</title>
    <updated>2026-10-02T11:41:54.897709+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can exploit a command injection vulnerability in the /index.php/ajax/get_iodd_menu_info endpoint using valid user or operator credentials allowing execution of commands with root privileges on the device.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3237-x8jg-4g4c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-014</id>
    <title>VDE-2026-014 — Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T11:41:54.897736+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-027</id>
    <title>VDE-2026-027 — Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices</title>
    <updated>2026-10-02T11:41:54.897780+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-027"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-028</id>
    <title>VDE-2026-028 — Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T11:41:54.897831+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-028"/>
  </entry>
</feed>
