<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-10T18:27:57.586543+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2020-05133</id>
    <title>bdu:2020-05133</title>
    <updated>2026-10-10T18:27:57.591313+00:00</updated>
    <content>bdu:2020-05133</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2020-05133"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-magento-2020-24408</id>
    <title>BIT-magento-2020-24408 — Stored XSS in customer address upload feature</title>
    <updated>2026-10-10T18:27:57.591348+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: magento</p>
<p>Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by a persistent XSS vulnerability that allows users to upload malicious JavaScript via the file upload component. This vulnerability could be abused by an unauthenticated attacker to execute XSS attacks against other Magento users. This vulnerability requires a victim to browse to the uploaded file.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-magento-2020-24408"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-648</id>
    <title>certfr-2020-avi-648 — De multiples vulnérabilités ont été découvertes dans Magento. Certaines
d'entre elles permettent à un attaquant de prov…</title>
    <updated>2026-10-10T18:27:57.591382+00:00</updated>
    <content>certfr-2020-avi-648</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-648"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-57886</id>
    <title>cnvd-2020-57886</title>
    <updated>2026-10-10T18:27:57.591399+00:00</updated>
    <content>cnvd-2020-57886</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-57886"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-183051</id>
    <title>EUVD-2026-183051</title>
    <updated>2026-10-10T18:27:57.591411+00:00</updated>
    <content>EUVD-2026-183051</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-183051"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-24408</id>
    <title>fkie_cve-2020-24408</title>
    <updated>2026-10-10T18:27:57.591421+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by a persistent XSS vulnerability that allows users to upload malicious JavaScript via the file upload component. This vulnerability could be abused by an unauthenticated attacker to execute XSS attacks against other Magento users. This vulnerability requires a victim to browse to the uploaded file.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-24408"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-jxjc-6xmh-h7mg</id>
    <title>GHSA-jxjc-6xmh-h7mg — Magento 2 Community Edition XSS Vulnerability</title>
    <updated>2026-10-10T18:27:57.591441+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: magento/community-edition</p>
<p>Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by a persistent XSS vulnerability that allows users to upload malicious JavaScript via the file upload component. This vulnerability could be abused by an unauthenticated attacker to execute XSS attacks against other Magento users. This vulnerability requires a victim to browse to the uploaded file.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-jxjc-6xmh-h7mg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-24408</id>
    <title>gsd-2020-24408</title>
    <updated>2026-10-10T18:27:57.591461+00:00</updated>
    <content>gsd-2020-24408</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-24408"/>
  </entry>
</feed>
