<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 03:36:33 +0000</lastBuildDate>
    <item>
      <title>cnvd-2016-08876</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-08876</link>
      <description>cnvd-2016-08876</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-08876</guid>
    </item>
    <item>
      <title>EUVD-2026-86932</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-86932</link>
      <description>EUVD-2026-86932</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-86932</guid>
    </item>
    <item>
      <title>fkie_cve-2016-7903</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-7903</link>
      <description>&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-7903</guid>
    </item>
    <item>
      <title>GHSA-m62w-37gh-m9j3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m62w-37gh-m9j3</link>
      <description>&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m62w-37gh-m9j3</guid>
    </item>
    <item>
      <title>gsd-2016-7903</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-7903</link>
      <description>gsd-2016-7903</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-7903</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2016-7903</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-7903</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: dotclear&lt;/p&gt;
&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: dotclear&lt;/p&gt;
&lt;p&gt;Dotclear before 2.10.3, when the Host header is not part of the web server routing process, allows remote attackers to modify the password reset address link via the HTTP Host header.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-7903</guid>
    </item>
  </channel>
</rss>
