<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T19:40:37.493766+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-331689</id>
    <title>EUVD-2026-331689</title>
    <updated>2026-10-05T19:40:37.568722+00:00</updated>
    <content>EUVD-2026-331689</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-331689"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54672</id>
    <title>fkie_cve-2026-54672</title>
    <updated>2026-10-05T19:40:37.568795+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>electron-updater allows for automatic updates for Electron apps. Prior to 26.15.0, AppImage targets built by app-builder-lib could use an empty path component when setting the LD_LIBRARY_PATH environment variable at runtime. This causes the current working directory to be added to the dynamic linker search path, which may allow an attacker to execute arbitrary code by placing a malicious shared library in the directory from which the AppImage is launched. This issue has been fixed in version 26.15.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-54672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7g7r-gx96-252g</id>
    <title>GHSA-7g7r-gx96-252g — electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib`</title>
    <updated>2026-10-05T19:40:37.568862+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: app-builder-lib</p>
<p>### Summary</p>
<p>`AppImage` targets built by `app-builder-lib` could use an empty path component when setting the `LD_LIBRARY_PATH` environment variable at runtime. This causes the current working directory to be added to the dynamic linker search path, which may allow an attacker to execute arbitrary code by placing a malicious shared library in the directory from which the `AppImage` is launched.</p>
<p>This vulnerability is the same class as [`CVE-2024-41817`](https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-8rxc-922v-phg8).</p>
<p>### Details</p>
<p>The vulnerability existed in two independent code paths within `app-builder-lib` (toolset `1.0.0`) and through upstream dependency `app-builder-bin` (toolset `0.0.0`).</p>
<p>#### Path 1 — Modern static runtime (`AppRun` generated by TypeScript)</p>
<p>The `AppRun` script generated by `app-builder-lib` contained this line:</p>
<p>```bash
export LD_LIBRARY_PATH="${APPDIR}/usr/lib:${LD_LIBRARY_PATH}"
```</p>
<p>When `LD_LIBRARY_PATH` is not set in the environment at launch time, this evaluates to:</p>
<p>```
/path/to/app.AppDir/usr/lib:
```</p>
<p>The trailing `:` is treated by the dynamic linker as an empty path component, which resolves to the current working directory. If an attacker can place a malicious shared library (e.g., `libfoo.so`) in the directory from which the `AppImage` is executed, that library will be loaded in place of the legitimate one, resulting in arbitrary code execution.</p>
<p>The same issue affected `PATH`, `XDG_DATA_DIRS`, and `GSETTINGS_SCHEMA_…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7g7r-gx96-252g"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11200-1</id>
    <title>openSUSE-SU-2026:11200-1 — heroic-games-launcher-2.22.0-4.1 on GA media</title>
    <updated>2026-10-05T19:40:37.568977+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>heroic-games-launcher-2.22.0-4.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:11200-1"/>
  </entry>
</feed>
