<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-10T19:08:52.811370+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-55704</id>
    <title>cnvd-2022-55704</title>
    <updated>2026-10-10T19:08:52.814651+00:00</updated>
    <content>cnvd-2022-55704</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-55704"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-11930</id>
    <title>EUVD-2026-11930</title>
    <updated>2026-10-10T19:08:52.814688+00:00</updated>
    <content>EUVD-2026-11930</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-11930"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-1756</id>
    <title>fkie_cve-2022-1756</title>
    <updated>2026-10-10T19:08:52.814703+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Newsletter WordPress plugin before 7.4.5 does not sanitize and escape the $_SERVER['REQUEST_URI'] before echoing it back in admin pages. Although this uses addslashes, and most modern browsers automatically URLEncode requests, this is still vulnerable to Reflected XSS in older browsers such as Internet Explorer 9 or below.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-1756"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mg6c-vwvq-75r2</id>
    <title>GHSA-mg6c-vwvq-75r2</title>
    <updated>2026-10-10T19:08:52.814734+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Newsletter WordPress plugin before 7.4.5 does not sanitize and escape the $_SERVER['REQUEST_URI'] before echoing it back in admin pages. Although this uses addslashes, and most modern browsers automatically URLEncode requests, this is still vulnerable to Reflected XSS in older browsers such as Internet Explorer 9 or below.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mg6c-vwvq-75r2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-1756</id>
    <title>gsd-2022-1756</title>
    <updated>2026-10-10T19:08:52.814751+00:00</updated>
    <content>gsd-2022-1756</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-1756"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2022-000057</id>
    <title>jvndb-2022-000057</title>
    <updated>2026-10-10T19:08:52.814763+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>WordPress Plugin "Newsletter" provided by Stefano Lissa &amp; The Newsletter Team contains a cross-site scripting vulnerability (CWE-79).

Gen Sato of Mitsui Bussan Secure Directions, Inc. reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2022-000057"/>
  </entry>
</feed>
