<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T06:40:20.073023+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-38076</id>
    <title>cnvd-2021-38076</title>
    <updated>2026-10-08T06:40:20.142003+00:00</updated>
    <content>cnvd-2021-38076</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-38076"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-28473</id>
    <title>EUVD-2026-28473</title>
    <updated>2026-10-08T06:40:20.142044+00:00</updated>
    <content>EUVD-2026-28473</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-28473"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-33561</id>
    <title>fkie_cve-2021-33561</title>
    <updated>2026-10-08T06:40:20.142059+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTML via customer_name in various forms of store administration. It is saved in the database. The code is executed for any user of store administration when information is fetched from the backend, e.g., in admin/customers/list.html.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-33561"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rcp4-jm2v-mr3f</id>
    <title>GHSA-rcp4-jm2v-mr3f — Cross-site scripting in Shopizer</title>
    <updated>2026-10-08T06:40:20.142090+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: com.shopizer:shopizer</p>
<p>A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary web script or HTML via customer_name in various forms of store administration. It is saved in the database. The code is executed for any user of store administration when information is fetched from the backend, e.g., in admin/customers/list.html.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rcp4-jm2v-mr3f"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-33561</id>
    <title>gsd-2021-33561</title>
    <updated>2026-10-08T06:40:20.142115+00:00</updated>
    <content>gsd-2021-33561</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-33561"/>
  </entry>
</feed>
