<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T13:21:46.450663+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-372441</id>
    <title>EUVD-2026-372441</title>
    <updated>2026-10-02T13:21:46.505825+00:00</updated>
    <content>EUVD-2026-372441</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-372441"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-27553</id>
    <title>fkie_cve-2026-27553</title>
    <updated>2026-10-02T13:21:46.505869+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-27553"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8vhg-m252-v9wj</id>
    <title>GHSA-8vhg-m252-v9wj</title>
    <updated>2026-10-02T13:21:46.505918+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A low-privileged remote attacker can manipulate the schema path parameter in the /index.php/diagnostics_tab/ajax_diag_table_rows endpoint using a valid user cookie allowing disclosure of all user password hashes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8vhg-m252-v9wj"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-014</id>
    <title>VDE-2026-014 — Pepperl+Fuchs: ICE2-* and ICE3-* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T13:21:46.505947+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-027</id>
    <title>VDE-2026-027 — Phoenix Contact: Multiple vulnerabilities in the firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices</title>
    <updated>2026-10-02T13:21:46.505989+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The firmware of IOL MA8 EIP DI8 and IOL MA8 PN DI8 devices is affected by security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-027"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-028</id>
    <title>VDE-2026-028 — Carlo Gavazzi Automation: YL212* and YN115* are affected by multiple security vulnerabilities</title>
    <updated>2026-10-02T13:21:46.506028+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The affected devices have security vulnerabilities that can be used to bypass authentication. Code can be executed on the devices through command injection and local file inclusion. Path traversal and modified schemata can be used to read sensitive information such as password hashes or private keys from the devices.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-028"/>
  </entry>
</feed>
