<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T06:24:10.544926+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-325666</id>
    <title>EUVD-2026-325666</title>
    <updated>2026-10-03T06:24:10.551499+00:00</updated>
    <content>EUVD-2026-325666</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-325666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-47345</id>
    <title>fkie_cve-2026-47345</title>
    <updated>2026-10-03T06:24:10.551531+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-47345"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p5j5-4j3q-8mq8</id>
    <title>GHSA-p5j5-4j3q-8mq8 — TYPO3 HTML Sanitizer allows Cross-site Scripting</title>
    <updated>2026-10-03T06:24:10.551561+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: typo3/html-sanitizer</p>
<p>Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of `typo3/html-sanitizer` before version 2.3.2.</p>
<p>Credits to Doyensec in collaboration with Claude and Anthropic Research for reporting this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p5j5-4j3q-8mq8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1835</id>
    <title>WID-SEC-W-2026-1835 — TYPO3 Core: Mehrere Schwachstellen</title>
    <updated>2026-10-03T06:24:10.551587+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in TYPO3 Core ausnutzen, um Sicherheitsbeschränkungen zu umgehen, Benutzer auf schädliche Websites umzuleiten, beliebigen Code auszuführen, Berechtigungen zu eskalieren oder andere Auswirkungen zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1835"/>
  </entry>
</feed>
