<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:29:35 +0000</lastBuildDate>
    <item>
      <title>bdu:2015-00666</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2015-00666</link>
      <description>bdu:2015-00666</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2015-00666</guid>
    </item>
    <item>
      <title>EUVD-2026-100182</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-100182</link>
      <description>EUVD-2026-100182</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-100182</guid>
    </item>
    <item>
      <title>fkie_cve-2014-4650</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-4650</link>
      <description>&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-4650</guid>
    </item>
    <item>
      <title>GHSA-33c8-ggqv-8g5p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-33c8-ggqv-8g5p</link>
      <description>&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-33c8-ggqv-8g5p</guid>
    </item>
    <item>
      <title>gsd-2014-4650</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-4650</link>
      <description>gsd-2014-4650</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-4650</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:0086-1 — Security update for python3</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0086-1</link>
      <description>&lt;p&gt;Security update for python3&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for python3&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:0086-1</guid>
    </item>
    <item>
      <title>RHSA-2015:1064 — Red Hat Security Advisory: python27 security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1064</link>
      <description>&lt;p&gt;python: multiple unbound readline() DoS flaws in python stdlib python: XMLRPC library unrestricted decompression of HTTP responses using gzip enconding python: buffer overflow in socket.recvfrom_into() python: missing boundary check in JSON module python: CGIHTTPServer module does not properly handle URL-encoded path separators in URLs python: buffer() integer overflow leading to out of bounds read&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;python: multiple unbound readline() DoS flaws in python stdlib python: XMLRPC library unrestricted decompression of HTTP responses using gzip enconding python: buffer overflow in socket.recvfrom_into() python: missing boundary check in JSON module python: CGIHTTPServer module does not properly handle URL-encoded path separators in URLs python: buffer() integer overflow leading to out of bounds read&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1064</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:1344-1 — Security update for python</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:1344-1</link>
      <description>&lt;p&gt;Security update for python&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for python&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:1344-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2014-4650</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-4650</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: python2.7, Ubuntu:14.04:LTS: python3.4&lt;/p&gt;
&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: python2.7, Ubuntu:14.04:LTS: python3.4&lt;/p&gt;
&lt;p&gt;The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-4650</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2521 — Python: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2521</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Python ausnutzen, um einen Denial of Service Angriff durchzuführen oder Code zur Ausführung zu bringen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Python ausnutzen, um einen Denial of Service Angriff durchzuführen oder Code zur Ausführung zu bringen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2521</guid>
    </item>
  </channel>
</rss>
