<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:33:03 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-105520</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-105520</link>
      <description>EUVD-2026-105520</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-105520</guid>
    </item>
    <item>
      <title>fkie_cve-2013-1665</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2013-1665</link>
      <description>&lt;p&gt;The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2013-1665</guid>
    </item>
    <item>
      <title>GHSA-x64m-686f-fmm3 — XML External Entity (XXE) in Django</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x64m-686f-fmm3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: Django&lt;/p&gt;
&lt;p&gt;The XML libraries for Python as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: Django&lt;/p&gt;
&lt;p&gt;The XML libraries for Python as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x64m-686f-fmm3</guid>
    </item>
    <item>
      <title>gsd-2013-1665</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2013-1665</link>
      <description>gsd-2013-1665</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2013-1665</guid>
    </item>
    <item>
      <title>PYSEC-2026-802 — XML External Entity (XXE) in Django</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2026-802</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: django&lt;/p&gt;
&lt;p&gt;The XML libraries for Python as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: django&lt;/p&gt;
&lt;p&gt;The XML libraries for Python as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, aka an XML External Entity (XXE) attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2026-802</guid>
    </item>
    <item>
      <title>RHSA-2013:0596 — Red Hat Security Advisory: openstack-keystone security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2013:0596</link>
      <description>&lt;p&gt;Keystone: EC2-style authentication accepts disabled user/tenants bindings: Internal entity expansion in Python XML libraries inflicts DoS vulnerabilities bindings: External entity expansion in Python XML libraries inflicts potential security flaws and DoS vulnerabilities&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Keystone: EC2-style authentication accepts disabled user/tenants bindings: Internal entity expansion in Python XML libraries inflicts DoS vulnerabilities bindings: External entity expansion in Python XML libraries inflicts potential security flaws and DoS vulnerabilities&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2013:0596</guid>
    </item>
  </channel>
</rss>
