<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T17:58:47.418847+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/advisory2026-03_vde-2026-018</id>
    <title>Advisory2026-03_VDE-2026-018 — CODESYS Control V3 - Externally-controlled format string in Auditlog</title>
    <updated>2026-10-03T17:58:47.421847+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CODESYS Control runtime system's CmpAuditLog component allows potentially unauthenticated remote attackers to control the format string of processed log messages. Due to the internal processing logic, the impact is limited to a crash of the CODESYS Control runtime.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/advisory2026-03_vde-2026-018"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-277502</id>
    <title>EUVD-2026-277502</title>
    <updated>2026-10-03T17:58:47.421893+00:00</updated>
    <content>EUVD-2026-277502</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-277502"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-3509</id>
    <title>fkie_cve-2026-3509</title>
    <updated>2026-10-03T17:58:47.421909+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker may be able to control the format string of messages processed by the Audit Log of the CODESYS Control runtime system, potentially resulting in a denial‑of‑service (DoS) condition.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-3509"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-34rr-qp2j-p4q7</id>
    <title>GHSA-34rr-qp2j-p4q7</title>
    <updated>2026-10-03T17:58:47.421933+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker may be able to control the format string of messages processed by the Audit Log of the CODESYS Control runtime system, potentially resulting in a denial‑of‑service (DoS) condition.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-34rr-qp2j-p4q7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0832</id>
    <title>WID-SEC-W-2026-0832 — CODESYS: Mehrere Schwachstellen</title>
    <updated>2026-10-03T17:58:47.421949+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in CODESYS ausnutzen, um beliebigen Programmcode auszuführen, und um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0832"/>
  </entry>
</feed>
