<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 22:55:33 +0000</lastBuildDate>
    <item>
      <title>bdu:2019-04386</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2019-04386</link>
      <description>bdu:2019-04386</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2019-04386</guid>
    </item>
    <item>
      <title>cnvd-2018-03157</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-03157</link>
      <description>cnvd-2018-03157</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-03157</guid>
    </item>
    <item>
      <title>EUVD-2026-62303</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-62303</link>
      <description>EUVD-2026-62303</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-62303</guid>
    </item>
    <item>
      <title>fkie_cve-2018-5712</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-5712</link>
      <description>&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-5712</guid>
    </item>
    <item>
      <title>GHSA-p569-737x-7h7p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-p569-737x-7h7p</link>
      <description>&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-p569-737x-7h7p</guid>
    </item>
    <item>
      <title>gsd-2018-5712</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-5712</link>
      <description>gsd-2018-5712</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-5712</guid>
    </item>
    <item>
      <title>RHSA-2018:1296 — Red Hat Security Advisory: rh-php70-php security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2018:1296</link>
      <description>&lt;p&gt;php: Heap overflow in mysqlnd when not receiving UNSIGNED_FLAG in BIT field php: Use after free in wddx_deserialize php: Out of bounds heap read when verifying signature of zip phar in phar_parse_zipfile php: Stack based buffer overflow in msgfmt_format_message php: Missing type check when unserializing SplArray php: Null pointer dereference in php_wddx_push_element php: Use-after-free vulnerability when resizing the &amp;#39;properties&amp;#39; hash table of a serialized object gd: Stack overflow in gdImageFillToBorder on truecolor images php: NULL Pointer Dereference in WDDX Packet Deserialization with PDORow php: Invalid read when wddx decodes empty boolean element php: Use After Free in unserialize() php: Wrong calculation in exif_convert_any_to_int function php: Integer overflow in phar_parse_pharfile php: Off-by-one error in phar_parse_pharfile when loading crafted phar archive php: Out-of-bounds heap read on unserialize in finish_nested_data() php: Null pointer dereference when unserializing PHP object gd: DoS vulnerability in gdImageCreateFromGd2Ctx() gd: Integer overflow in gd_io.c php: Use of uninitialized memory in unserialize() php: Buffer over-read from unitialized data in gdImageCreateFromGifCtx function oniguruma: Out-of-bounds stack read in match_at() during regular expression searching oniguruma: Heap buffer overflow in next_state_val() during regular expression compilation oniguruma: Out-of-bounds stack read in mbc_enc_len() during regular expression searching oniguruma: O…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;php: Heap overflow in mysqlnd when not receiving UNSIGNED_FLAG in BIT field php: Use after free in wddx_deserialize php: Out of bounds heap read when verifying signature of zip phar in phar_parse_zipfile php: Stack based buffer overflow in msgfmt_format_message php: Missing type check when unserializing SplArray php: Null pointer dereference in php_wddx_push_element php: Use-after-free vulnerability when resizing the &amp;#39;properties&amp;#39; hash table of a serialized object gd: Stack overflow in gdImageFillToBorder on truecolor images php: NULL Pointer Dereference in WDDX Packet Deserialization with PDORow php: Invalid read when wddx decodes empty boolean element php: Use After Free in unserialize() php: Wrong calculation in exif_convert_any_to_int function php: Integer overflow in phar_parse_pharfile php: Off-by-one error in phar_parse_pharfile when loading crafted phar archive php: Out-of-bounds heap read on unserialize in finish_nested_data() php: Null pointer dereference when unserializing PHP object gd: DoS vulnerability in gdImageCreateFromGd2Ctx() gd: Integer overflow in gd_io.c php: Use of uninitialized memory in unserialize() php: Buffer over-read from unitialized data in gdImageCreateFromGifCtx function oniguruma: Out-of-bounds stack read in match_at() during regular expression searching oniguruma: Heap buffer overflow in next_state_val() during regular expression compilation oniguruma: Out-of-bounds stack read in mbc_enc_len() during regular expression searching oniguruma: O…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2018:1296</guid>
    </item>
    <item>
      <title>RHSA-2020:1112 — Red Hat Security Advisory: php security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:1112</link>
      <description>&lt;p&gt;php: Reflected XSS on PHAR 404 page php: Stack-based buffer under-read in php_stream_url_wrap_http_ex() in http_fopen_wrapper.c when parsing HTTP response php: Reflected XSS vulnerability on PHAR 403 and 404 error pages php: Out-of-bounds read in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;php: Reflected XSS on PHAR 404 page php: Stack-based buffer under-read in php_stream_url_wrap_http_ex() in http_fopen_wrapper.c when parsing HTTP response php: Reflected XSS vulnerability on PHAR 403 and 404 error pages php: Out-of-bounds read in base64_decode_xmlrpc in ext/xmlrpc/libxmlrpc/base64.c&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:1112</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0216-1 — Security update for php5</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0216-1</link>
      <description>&lt;p&gt;Security update for php5&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for php5&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0216-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2018-5712</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-5712</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: php5, Ubuntu:16.04:LTS: php7.0&lt;/p&gt;
&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: php5, Ubuntu:16.04:LTS: php7.0&lt;/p&gt;
&lt;p&gt;An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-5712</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0991 — PHP: Schwachstelle ermöglicht Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0991</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in PHP ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in PHP ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0991</guid>
    </item>
  </channel>
</rss>
