<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T02:02:16.859715+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-373443</id>
    <title>EUVD-2026-373443</title>
    <updated>2026-10-04T02:02:16.862232+00:00</updated>
    <content>EUVD-2026-373443</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-373443"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-90990</id>
    <title>fkie_cve-2026-90990</title>
    <updated>2026-10-04T02:02:16.862266+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper neutralization of newlines in filter values in the monitoring host and service list APIs in Checkmk &lt;2.5.0p14 allows an authenticated user to inject additional Livestatus query headers, bypassing object visibility restrictions in count queries to infer information about hosts and services outside their contact groups and occupying web server and Livestatus workers for an attacker-controlled duration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-90990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-v742-5hjw-gqcp</id>
    <title>GHSA-v742-5hjw-gqcp</title>
    <updated>2026-10-04T02:02:16.862301+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper neutralization of newlines in filter values in the monitoring host and service list APIs in Checkmk &lt;2.5.0p14 allows an authenticated user to inject additional Livestatus query headers, bypassing object visibility restrictions in count queries to infer information about hosts and services outside their contact groups and occupying web server and Livestatus workers for an attacker-controlled duration.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-v742-5hjw-gqcp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3485</id>
    <title>WID-SEC-W-2026-3485 — Checkmk: Mehrere Schwachstellen</title>
    <updated>2026-10-04T02:02:16.862319+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Checkmk ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und um Daten zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3485"/>
  </entry>
</feed>
