<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T10:15:14.694149+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cve-2026-5270</id>
    <title>CVE-2026-5270 — Authentication Bypass in Navigator and Blue Planet Products</title>
    <updated>2026-10-07T10:15:14.713450+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CIENA Navigator NCS, CIENA MCP, CIENA Planner Plus OnPrem, Blue Planet Inventory, Blue Planet Orchestration, Blue Planet Route Optimization &amp; Analysis, Blue Planet Unified Assurance &amp; Analytics</p>
<p>An authentication bypass vulnerability exists in certain releases of Ciena Navigator Network Control Suite (NCS), Manage Control Plan (MCP), and Blue Planet products. The issue is caused by improper handling of HTTP request paths and headers, which allows an unauthenticated attacker to manipulate requests in a manner that bypasses authentication and associated audit logging controls.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cve-2026-5270"/>
  </entry>
</feed>
