<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:07:04.804803+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-369556</id>
    <title>EUVD-2026-369556</title>
    <updated>2026-10-02T16:07:04.855953+00:00</updated>
    <content>EUVD-2026-369556</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-369556"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-27552</id>
    <title>fkie_cve-2026-27552</title>
    <updated>2026-10-02T16:07:04.856009+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can exploit improper authorization in the /index.php/attached_devices_tab/do_upload endpoint to upload IODD files to the device, potentially altering device behavior or causing system crashes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-27552"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-85mr-mj2w-73j9</id>
    <title>GHSA-85mr-mj2w-73j9</title>
    <updated>2026-10-02T16:07:04.856049+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can exploit improper authorization in the /index.php/attached_devices_tab/do_upload endpoint to upload IODD files to the device, potentially altering device behavior or causing system crashes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-85mr-mj2w-73j9"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-014</id>
    <title>VDE-2026-014 — Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T16:07:04.856066+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-027</id>
    <title>VDE-2026-027 — Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices</title>
    <updated>2026-10-02T16:07:04.856094+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-027"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-028</id>
    <title>VDE-2026-028 — Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T16:07:04.856117+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-028"/>
  </entry>
</feed>
