<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T11:41:39.527509+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/2026-0521-tm-a1-001</id>
    <title>2026-0521-TM-A1-001 — ITW SECURITY BULLETIN: Apex One and Vision One and Standard Endpoint Protection (SEP) May 2026 Security Bulletin</title>
    <updated>2026-10-02T11:41:39.532460+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>TrendAI has released updates to Apex One (on-premise), Apex One as a Service and Vision One - Standard Endpoint Protection (SEP) to resolve multiple vulnerabilities. ! ITW Notification: TrendAI has observed at least one instance of an attempt to actively exploit one of these vulnerabilities in the wild.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/2026-0521-tm-a1-001"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-08141</id>
    <title>bdu:2026-08141</title>
    <updated>2026-10-02T11:41:39.532505+00:00</updated>
    <content>bdu:2026-08141</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-08141"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0642</id>
    <title>certfr-2026-avi-0642 — De multiples vulnérabilités ont été découvertes dans les produits Trend Micro. Elles permettent à un attaquant de provo…</title>
    <updated>2026-10-02T11:41:39.532521+00:00</updated>
    <content>certfr-2026-avi-0642</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0642"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-320060</id>
    <title>EUVD-2026-320060</title>
    <updated>2026-10-02T11:41:39.532537+00:00</updated>
    <content>EUVD-2026-320060</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-320060"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-34926</id>
    <title>fkie_cve-2026-34926</title>
    <updated>2026-10-02T11:41:39.532548+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents on affected installations.</p>
<p>This vulnerability is only exploitable on the on-premise version of Apex One and a potential attacker must have access to the Apex One Server and already obtained administrative credentials to the server via some other method to exploit this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-34926"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4ccp-cqrh-3w9v</id>
    <title>GHSA-4ccp-cqrh-3w9v</title>
    <updated>2026-10-02T11:41:39.532572+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents on affected installations.</p>
<p>This vulnerability is only exploitable on the on-premise version of Apex One and a potential attacker must have access to the Apex One Server and already obtained administrative credentials to the server via some other method to exploit this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4ccp-cqrh-3w9v"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2026-016802</id>
    <title>jvndb-2026-016802</title>
    <updated>2026-10-02T11:41:39.532589+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Multiple vulnerabilities in Trend Micro Endpoint security products for enterprises contain multiple vulnerabilities listed below.&lt;ul&gt;&lt;li&gt;Relative path traversal in Apex One server (CWE-23) - CVE-2026-34926&lt;ul&gt;&lt;li&gt;The only product that could be vulnerable to this exploit is TrendAI Apex One (On Premise).&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;li&gt;Origin validation error in Security Agent (CWE-346) - CVE-2026-34927,CVE-2026-34928,CVE-2026-34929,CVE-2026-34930,CVE-2026-45206,CVE-2026-45207&lt;/li&gt;&lt;li&gt;Time-of-check time-of-use (TOCTOU) race condition in Security Agent (CWE-367) - CVE-2026-45208&lt;/li&gt;&lt;/ul&gt;Trend Micro Incorporated has reported that attacks exploiting CVE-2026-34926 have been observed in the wild.

Trend Micro Incorporated reported these vulnerabilities to JPCERT/CC to notify users of the solutions through JVN.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2026-016802"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1643</id>
    <title>WID-SEC-W-2026-1643 — Trend Micro Apex One: Mehrere Schwachstellen ermöglichen Privilegieneskalation und die Ausführung von Code</title>
    <updated>2026-10-02T11:41:39.532611+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen in Trend Micro Apex One ausnutzen, um seine Privilegien zu erhöhen und beliebigen Code auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1643"/>
  </entry>
</feed>
