<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T11:05:03.463420+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-08391</id>
    <title>bdu:2024-08391</title>
    <updated>2026-10-02T11:05:03.622311+00:00</updated>
    <content>bdu:2024-08391</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-08391"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2023-24531</id>
    <title>Withdrawn: BELL-CVE-2023-24531 — CVE-2023-24531 does not affect BellSoft software</title>
    <updated>2026-10-02T11:05:03.622358+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-golang-2023-24531</id>
    <title>BIT-golang-2023-24531 — Output of "go env" does not sanitize values in cmd/go</title>
    <updated>2026-10-02T11:05:03.622385+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: golang</p>
<p>Command go env is documented as outputting a shell script containing the Go environment. However, go env doesn't sanitize values, so executing its output as a shell script can cause various bad bahaviors, including executing arbitrary commands or inserting new environment variables. This issue is relatively minor because, in general, if an attacker can set arbitrary environment variables on a system, they have better attack vectors than making "go env" print them out.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-golang-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0256</id>
    <title>certfr-2025-avi-0256 — De multiples vulnérabilités ont été découvertes dans Broadcom VMware Tanzu Greenplum. Elles permettent à un attaquant d…</title>
    <updated>2026-10-02T11:05:03.622444+00:00</updated>
    <content>certfr-2025-avi-0256</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0256"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-225993</id>
    <title>EUVD-2026-225993</title>
    <updated>2026-10-02T11:05:03.622470+00:00</updated>
    <content>EUVD-2026-225993</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-225993"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-24531</id>
    <title>fkie_cve-2023-24531</title>
    <updated>2026-10-02T11:05:03.622482+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Command go env is documented as outputting a shell script containing the Go environment. However, go env doesn't sanitize values, so executing its output as a shell script can cause various bad bahaviors, including executing arbitrary commands or inserting new environment variables. This issue is relatively minor because, in general, if an attacker can set arbitrary environment variables on a system, they have better attack vectors than making "go env" print them out.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-cwpg-qgc6-jxvq</id>
    <title>GHSA-cwpg-qgc6-jxvq</title>
    <updated>2026-10-02T11:05:03.622507+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Command go env is documented as outputting a shell script containing the Go environment. However, go env doesn't sanitize values, so executing its output as a shell script can cause various bad bahaviors, including executing arbitrary commands or inserting new environment variables. This issue is relatively minor because, in general, if an attacker can set arbitrary environment variables on a system, they have better attack vectors than making "go env" print them out.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-cwpg-qgc6-jxvq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-24531</id>
    <title>gsd-2023-24531</title>
    <updated>2026-10-02T11:05:03.622524+00:00</updated>
    <content>gsd-2023-24531</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2023-24531</id>
    <title>msrc_CVE-2023-24531 — Output of "go env" does not sanitize values in cmd/go</title>
    <updated>2026-10-02T11:05:03.622535+00:00</updated>
    <content>msrc_CVE-2023-24531</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-24531</id>
    <title>UBUNTU-CVE-2023-24531</title>
    <updated>2026-10-02T11:05:03.622550+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: golang-1.10, Ubuntu:Pro:16.04:LTS: golang-1.18, Ubuntu:16.04:LTS: golang-1.10, Ubuntu:16.04:LTS: golang-1.6, Ubuntu:Pro:16.04:LTS: golang-1.13, Ubuntu:18.04:LTS: golang-1.10, Ubuntu:Pro:18.04:LTS: golang-1.13, Ubuntu:Pro:18.04:LTS: golang-1.16, Ubuntu:Pro:18.04:LTS: golang-1.18, Ubuntu:18.04:LTS: golang-1.8 and 13 more</p>
<p>Command go env is documented as outputting a shell script containing the Go environment. However, go env doesn't sanitize values, so executing its output as a shell script can cause various bad bahaviors, including executing arbitrary commands or inserting new environment variables. This issue is relatively minor because, in general, if an attacker can set arbitrary environment variables on a system, they have better attack vectors than making "go env" print them out.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-24531"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1706</id>
    <title>WID-SEC-W-2026-1706 — Jabra Direct: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
    <updated>2026-10-02T11:05:03.622606+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Jabra Direct ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1706"/>
  </entry>
</feed>
