<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T06:50:09.760720+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-319868</id>
    <title>EUVD-2026-319868</title>
    <updated>2026-10-07T06:50:09.849515+00:00</updated>
    <content>EUVD-2026-319868</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-319868"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-47782</id>
    <title>fkie_cve-2026-47782</title>
    <updated>2026-10-07T06:50:09.849571+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Android App "RoboForm Password Manager" provided by Siber Systems, Inc. handles Android intents without sufficient URL validation, user confirmation nor notification. If a URL to some malicious web page is given through an intent, RoboForm may silently download files without user confirmation nor notification.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-47782"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-5mhm-vj5h-r98h</id>
    <title>GHSA-5mhm-vj5h-r98h</title>
    <updated>2026-10-07T06:50:09.849619+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Android App "RoboForm Password Manager" provided by Siber Systems, Inc. handles Android intents without sufficient URL validation, user confirmation nor notification. If a URL to some malicious web page is given through an intent, RoboForm may silently download files without user confirmation nor notification.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-5mhm-vj5h-r98h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2026-016626</id>
    <title>jvndb-2026-016626</title>
    <updated>2026-10-07T06:50:09.849652+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Android App "RoboForm Password Manager" provided by Siber Systems, Inc. accepts intents from other applications to open relevant web pages (e.g., login pages), but without sufficient URL validation, user confirmation nor notification.&lt;a href='https://cwe.mitre.org/data/definitions/357.html' target='_blank'&gt;&lt;/a&gt;&lt;ul&gt;&lt;li&gt;Insufficient UI Warning of Dangerous Operations (CWE-357) - CVE-2026-47782&lt;/li&gt;&lt;li&gt;The CVSS vectors above assume that a victim user is directed to install some malicious app, and the app sends an intent to make RoboForm to download some files silently&lt;/li&gt;&lt;/ul&gt;Johan Francsics reported this vulnerability to JPCERT/CC.
JPCERT/CC coordinated with the developer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2026-016626"/>
  </entry>
</feed>
