<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T23:05:18.551815+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-351872</id>
    <title>EUVD-2026-351872</title>
    <updated>2026-10-08T23:05:18.603903+00:00</updated>
    <content>EUVD-2026-351872</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-351872"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-34184</id>
    <title>fkie_cve-2026-34184</title>
    <updated>2026-10-08T23:05:18.603945+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>AlanWeb SCADA does not enforce authorization for some directories. This allows an unauthorized attacker to read all files in these directories and even execute some of them. Critically the attacker could run PHP scripts directly on the connected database.</p>
<p>This issue was fixed in AlanWeb SCADA version 9.8.5</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-34184"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-hh72-xj72-2c38</id>
    <title>GHSA-hh72-xj72-2c38</title>
    <updated>2026-10-08T23:05:18.603983+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Hydrosystem Control System does not enforce authorization for some directories. This allows an unauthorized attacker to read all files in these directories and even execute some of them. Critically the attacker could run PHP scripts directly on the connected database.This issue was fixed in Hydrosystem Control System version 9.8.5</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-hh72-xj72-2c38"/>
  </entry>
</feed>
