<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T20:31:11.072672+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0281</id>
    <title>certfr-2026-avi-0281 — De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-08T20:31:11.168085+00:00</updated>
    <content>certfr-2026-avi-0281</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0281"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-309387</id>
    <title>EUVD-2026-309387</title>
    <updated>2026-10-08T20:31:11.168127+00:00</updated>
    <content>EUVD-2026-309387</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-309387"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-13033</id>
    <title>fkie_cve-2025-13033</title>
    <updated>2026-10-08T20:31:11.168142+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was identified in the email parsing library due to improper handling of specially formatted recipient email addresses. An attacker can exploit this flaw by crafting a recipient address that embeds an external address within quotes. This causes the application to misdirect the email to the attacker's external address instead of the intended internal recipient. This could lead to a significant data leak of sensitive information and allow an attacker to bypass security filters and access controls.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-13033"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mm7p-fcc7-pg87</id>
    <title>GHSA-mm7p-fcc7-pg87 — Nodemailer: Email to an unintended domain can occur due to Interpretation Conflict</title>
    <updated>2026-10-08T20:31:11.168175+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: nodemailer</p>
<p>The email parsing library incorrectly handles quoted local-parts containing @. This leads to misrouting of email recipients, where the parser extracts and routes to an unintended domain instead of the RFC-compliant target.</p>
<p>Payload: `"xclow3n@gmail.com x"@internal.domain`
Using the following code to send mail
```
const nodemailer = require("nodemailer");</p>
<p>let transporter = nodemailer.createTransport({
  service: "gmail",
  auth: {
    user: "",
    pass: "",
  },
});</p>
<p>let mailOptions = {
  from: '"Test Sender" &lt;your_email@gmail.com&gt;', 
  to: "\"xclow3n@gmail.com x\"@internal.domain",
  subject: "Hello from Nodemailer",
  text: "This is a test email sent using Gmail SMTP and Nodemailer!",
};</p>
<p>transporter.sendMail(mailOptions, (error, info) =&gt; {
  if (error) {
    return console.log("Error: ", error);
  }
  console.log("Message sent: %s", info.messageId);</p>
<p>});</p>
<p>(async () =&gt; {
  const parser = await import("@sparser/email-address-parser");
  const { EmailAddress, ParsingOptions } = parser.default;
  const parsed = EmailAddress.parse(mailOptions.to /*, new ParsingOptions(true) */);</p>
<p>if (!parsed) {
    console.error("Invalid email address:", mailOptions.to);
    return;
  }</p>
<p>console.log("Parsed email:", {
    address: `${parsed.localPart}@${parsed.domain}`,
    local: parsed.localPart,
    domain: parsed.domain,
  });
})();
```</p>
<p>Running the script and seeing how this mail is parsed according to RFC</p>
<p>```
Parsed email: {
  address: '"xclow3n@gmail.com x"@internal.domain',
  lo…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mm7p-fcc7-pg87"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:15979</id>
    <title>RHSA-2026:15979 — Red Hat Security Advisory: Red Hat Ceph Storage</title>
    <updated>2026-10-08T20:31:11.168226+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nodemailer: Nodemailer: Email to an unintended domain can occur due to Interpretation Conflict golang.org/x/crypto/ssh/agent: SSH Agent servers: Denial of Service due to malformed messages golang.org/x/crypto/ssh: golang.org/x/crypto/ssh: Denial of Service via unbounded memory consumption in GSSAPI authentication crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate js-yaml: js-yaml prototype pollution in merge glob: glob: Command Injection Vulnerability via Malicious Filenames github.com/expr-lang/expr: Expr: Denial of Service via uncontrolled recursion in expression evaluation</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:15979"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-13033</id>
    <title>UBUNTU-CVE-2025-13033</title>
    <updated>2026-10-08T20:31:11.168259+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: node-nodemailer, Ubuntu:22.04:LTS: node-nodemailer, Ubuntu:24.04:LTS: node-nodemailer, Ubuntu:25.10: node-nodemailer</p>
<p>A vulnerability was identified in the email parsing library due to improper handling of specially formatted recipient email addresses. An attacker can exploit this flaw by crafting a recipient address that embeds an external address within quotes. This causes the application to misdirect the email to the attacker's external address instead of the intended internal recipient. This could lead to a significant data leak of sensitive information and allow an attacker to bypass security filters and access controls.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-13033"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0592</id>
    <title>WID-SEC-W-2026-0592 — Red Hat Developer Hub: Mehrere Schwachstellen</title>
    <updated>2026-10-08T20:31:11.168286+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in Red Hat Developer Hub ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen oder um vertrauliche Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0592"/>
  </entry>
</feed>
