<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T19:04:49.267412+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-240079</id>
    <title>EUVD-2026-240079</title>
    <updated>2026-10-06T19:04:49.271026+00:00</updated>
    <content>EUVD-2026-240079</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-240079"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-32999</id>
    <title>fkie_cve-2025-32999</title>
    <updated>2026-10-06T19:04:49.271064+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability exists in a-blog cms versions prior to Ver. 3.1.43 and prior to Ver. 3.0.47. This issue exists in a specific field in the entry editing screen, and exploitation requires contributor or higher level privileges.  If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the product.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-32999"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8wqw-fgqf-9mf2</id>
    <title>GHSA-8wqw-fgqf-9mf2</title>
    <updated>2026-10-06T19:04:49.271097+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting vulnerability exists in a-blog cms versions prior to Ver. 3.1.43 and prior to Ver. 3.0.47. This issue exists in a specific field in the entry editing screen, and exploitation requires contributor or higher level privileges.  If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is logging in to the product.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8wqw-fgqf-9mf2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2025-005050</id>
    <title>jvndb-2025-005050</title>
    <updated>2026-10-06T19:04:49.271114+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>a-blog cms provided by appleple inc. contains multiple vulnerabilities listed below.

&lt;ul&gt;
&lt;li&gt;Path traversal (CWE-22)&lt;/li&gt;
&lt;ul&gt;
&lt;li&gt;CVE-2025-27566&lt;/li&gt;
&lt;li&gt;This is an issue with insufficient path validation in the backup feature, and exploitation requires the administrator privilege&lt;/li&gt;
&lt;/ul&gt;

&lt;li&gt;Cross-site scripting (CWE-79)&lt;/li&gt;
&lt;ul&gt;
&lt;li&gt;CVE-2025-32999&lt;/li&gt;
&lt;li&gt;This issue exists in a specific field in the entry editing screen, and exploitation requires contributor or higher level privileges&lt;/li&gt;
&lt;/ul&gt;

&lt;li&gt;Server-side request forgery (CWE-918)&lt;/li&gt;
&lt;ul&gt;&lt;li&gt;CVE-2025-36560&lt;/li&gt;&lt;/ul&gt;

&lt;li&gt;Improper output neutralization for logs (CWE-117)&lt;/li&gt;
&lt;ul&gt;&lt;li&gt;CVE-2025-41429&lt;/li&gt;&lt;/ul&gt;

CVE-2025-27566, CVE-2025-32999
haidv35 (Dinh Viet Hai) reported these vulnerabilities to the developer and coordinated. After the coordination was completed, haidv35 (Dinh Viet Hai) reported the case to JPCERT/CC to notify users of the solution through JVN.

CVE-2025-36560, CVE-2025-41429
vcth4nh from VCSLab of Viettel Cyber Security (Vu Chi Thanh) reported these vulnerabilities to JPCERT/CC. JPCERT/CC coordinated with the developer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2025-005050"/>
  </entry>
</feed>
