<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T21:43:46.471963+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278259</id>
    <title>EUVD-2026-278259</title>
    <updated>2026-10-06T21:43:46.516331+00:00</updated>
    <content>EUVD-2026-278259</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278259"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33885</id>
    <title>fkie_cve-2026-33885</title>
    <updated>2026-10-06T21:43:46.516366+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Statamic is a Laravel and Git powered content management system (CMS). Prior to versions 5.73.16 and 6.7.2, the external URL detection used for redirect validation on unauthenticated endpoints could be bypassed, allowing users to be redirected to external URLs after actions like form submissions and authentication flows. This has been fixed in 5.73.16 and 6.7.2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33885"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7f74-7q5w-hj4r</id>
    <title>GHSA-7f74-7q5w-hj4r — Statamic has an Open Redirect on unauthenticated endpoints via URL parsing differential</title>
    <updated>2026-10-06T21:43:46.516399+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Packagist: statamic/cms</p>
<p>### Impact
The external URL detection used for redirect validation on unauthenticated endpoints could be bypassed, allowing users to be redirected to external URLs after actions like form submissions and authentication flows.</p>
<p>### Patches
This has been fixed in 5.73.16 and 6.7.2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7f74-7q5w-hj4r"/>
  </entry>
</feed>
