<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 15:37:48 +0000</lastBuildDate>
    <item>
      <title>cnvd-2020-02285</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-02285</link>
      <description>cnvd-2020-02285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-02285</guid>
    </item>
    <item>
      <title>EUVD-2026-59273</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-59273</link>
      <description>EUVD-2026-59273</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-59273</guid>
    </item>
    <item>
      <title>fkie_cve-2019-19336</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-19336</link>
      <description>&lt;p&gt;A cross-site scripting vulnerability was reported in the oVirt-engine&amp;#39;s OAuth authorization endpoint before version 4.3.8. URL parameters were included in the HTML response without escaping. This flaw would allow an attacker to craft malicious HTML pages that can run scripts in the context of the user&amp;#39;s oVirt session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A cross-site scripting vulnerability was reported in the oVirt-engine&amp;#39;s OAuth authorization endpoint before version 4.3.8. URL parameters were included in the HTML response without escaping. This flaw would allow an attacker to craft malicious HTML pages that can run scripts in the context of the user&amp;#39;s oVirt session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-19336</guid>
    </item>
    <item>
      <title>GHSA-969f-386j-4c9x</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-969f-386j-4c9x</link>
      <description>&lt;p&gt;A cross-site scripting vulnerability was reported in the oVirt-engine&amp;#39;s OAuth authorization endpoint before version 4.3.8. URL parameters were included in the HTML response without escaping. This flaw would allow an attacker to craft malicious HTML pages that can run scripts in the context of the user&amp;#39;s oVirt session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A cross-site scripting vulnerability was reported in the oVirt-engine&amp;#39;s OAuth authorization endpoint before version 4.3.8. URL parameters were included in the HTML response without escaping. This flaw would allow an attacker to craft malicious HTML pages that can run scripts in the context of the user&amp;#39;s oVirt session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-969f-386j-4c9x</guid>
    </item>
    <item>
      <title>gsd-2019-19336</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-19336</link>
      <description>gsd-2019-19336</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-19336</guid>
    </item>
    <item>
      <title>RHSA-2020:0498 — Red Hat Security Advisory: Red Hat Virtualization Engine security, bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:0498</link>
      <description>&lt;p&gt;ovirt-engine: response_type parameter allows reflected XSS&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ovirt-engine: response_type parameter allows reflected XSS&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:0498</guid>
    </item>
  </channel>
</rss>
