<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T04:23:16.508959+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-09949</id>
    <title>bdu:2026-09949</title>
    <updated>2026-10-03T04:23:16.603960+00:00</updated>
    <content>bdu:2026-09949</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-09949"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2026-29397</id>
    <title>cnvd-2026-29397</title>
    <updated>2026-10-03T04:23:16.603998+00:00</updated>
    <content>cnvd-2026-29397</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2026-29397"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-336455</id>
    <title>EUVD-2026-336455</title>
    <updated>2026-10-03T04:23:16.604012+00:00</updated>
    <content>EUVD-2026-336455</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-336455"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-56451</id>
    <title>fkie_cve-2026-56451</title>
    <updated>2026-10-03T04:23:16.604024+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in Opcenter X (All versions &lt; V2604). Affected applications do not properly validate the algorithm specified in the JSON Web Token (JWT) header.
This could allow an unauthenticated remote attacker to forge arbitrary JWT, bypass authentication mechanisms and impersonate any user including administrative accounts, potentially gaining full unauthorized access to the application.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-56451"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-j4h7-9cc4-7f3r</id>
    <title>GHSA-j4h7-9cc4-7f3r</title>
    <updated>2026-10-03T04:23:16.604054+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability has been identified in Opcenter X (All versions &lt; V2604). Affected applications do not properly validate the algorithm specified in the JSON Web Token (JWT) header.
This could allow an unauthenticated remote attacker to forge arbitrary JWT, bypass authentication mechanisms and impersonate any user including administrative accounts, potentially gaining full unauthorized access to the application.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-j4h7-9cc4-7f3r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-26-202-03</id>
    <title>ICSA-26-202-03 — Siemens Opcenter X</title>
    <updated>2026-10-03T04:23:16.604072+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application.</p>
<p>Siemens has released a new version for Opcenter X and recommends to update to the latest version.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-26-202-03"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0229</id>
    <title>NCSC-2026-0229 — Kwetsbaarheden verholpen in Siemens producten</title>
    <updated>2026-10-03T04:23:16.604094+00:00</updated>
    <content>NCSC-2026-0229</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0229"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-096828</id>
    <title>SSA-096828 — SSA-096828: Token Invalidation Vulnerability in Opcenter X Before V2604</title>
    <updated>2026-10-03T04:23:16.604156+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Opcenter X before V2604 contain an authentication bypass vulnerability that could allow an attacker to gain full unauthorized access to the application.</p>
<p>Siemens has released a new version for Opcenter X and recommends to update to the latest version.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-096828"/>
  </entry>
</feed>
