<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T18:26:06.631402+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/drupal-contrib-2026-033</id>
    <title>DRUPAL-CONTRIB-2026-033</title>
    <updated>2026-10-08T18:26:06.634528+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist:https://packages.drupal.org/8: drupal/obfuscate</p>
<p>This module enables you to obfuscate email addresses in content.</p>
<p>The module doesn't sufficiently sanitize user input via the Twig filter.</p>
<p>This vulnerability is mitigated by the fact that it only affects sites using the ROT13 encoding and where an attacker can enter content that is filtered using the module's Twig filter.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/drupal-contrib-2026-033"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-319620</id>
    <title>EUVD-2026-319620</title>
    <updated>2026-10-08T18:26:06.634576+00:00</updated>
    <content>EUVD-2026-319620</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-319620"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-6871</id>
    <title>fkie_cve-2026-6871</title>
    <updated>2026-10-08T18:26:06.634592+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Obfuscate allows Cross-Site Scripting (XSS).</p>
<p>This issue affects Obfuscate: from 0.0.0 before 2.0.2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-6871"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rg7p-g694-c73p</id>
    <title>GHSA-rg7p-g694-c73p</title>
    <updated>2026-10-08T18:26:06.634614+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") vulnerability in Drupal Obfuscate allows Cross-Site Scripting (XSS).</p>
<p>This issue affects Obfuscate: from 0.0.0 before 2.0.2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rg7p-g694-c73p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1248</id>
    <title>WID-SEC-W-2026-1248 — Drupal (Obfuscate): Schwachstelle ermöglicht Cross-Site Scripting</title>
    <updated>2026-10-08T18:26:06.634629+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Drupal ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1248"/>
  </entry>
</feed>
