<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 10:18:32 +0000</lastBuildDate>
    <item>
      <title>certfr-2020-avi-550 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-550</link>
      <description>certfr-2020-avi-550</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-550</guid>
    </item>
    <item>
      <title>cnvd-2020-51246</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-51246</link>
      <description>cnvd-2020-51246</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-51246</guid>
    </item>
    <item>
      <title>EUVD-2026-43150</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-43150</link>
      <description>EUVD-2026-43150</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-43150</guid>
    </item>
    <item>
      <title>fkie_cve-2020-15789</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-15789</link>
      <description>&lt;p&gt;A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user, who must be authenticated to the web interface. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. This could allow the attacker to read or modify contents of the web application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user, who must be authenticated to the web interface. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. This could allow the attacker to read or modify contents of the web application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-15789</guid>
    </item>
    <item>
      <title>GHSA-jc3m-3wcx-qq62</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jc3m-3wcx-qq62</link>
      <description>&lt;p&gt;A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user, who must be authenticated to the web interface. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. This could allow the attacker to read or modify contents of the web application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user, who must be authenticated to the web interface. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. This could allow the attacker to read or modify contents of the web application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jc3m-3wcx-qq62</guid>
    </item>
    <item>
      <title>gsd-2020-15789</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-15789</link>
      <description>gsd-2020-15789</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-15789</guid>
    </item>
    <item>
      <title>ICSA-20-252-08 — Siemens Polarion Subversion Webclient</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-20-252-08</link>
      <description>&lt;p&gt;The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If a user is enticed into passing specially crafted, malicious input to the web client (e.g.&amp;#39;by clicking on a malicious URL with embedded JavaScript), then JavaScript code can be returned and may then be executed by the user&amp;#39;s client. Various actions could be triggered by running malicious JavaScript code. The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If a user is enticed into passing specially crafted, malicious input to the web client (e.g.&amp;#39;by clicking on a malicious URL with embedded JavaScript), then JavaScript code can be returned and may then be executed by the user&amp;#39;s client. Various actions could be triggered by running malicious JavaScript code.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If a user is enticed into passing specially crafted, malicious input to the web client (e.g.&amp;#39;by clicking on a malicious URL with embedded JavaScript), then JavaScript code can be returned and may then be executed by the user&amp;#39;s client. Various actions could be triggered by running malicious JavaScript code. The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If a user is enticed into passing specially crafted, malicious input to the web client (e.g.&amp;#39;by clicking on a malicious URL with embedded JavaScript), then JavaScript code can be returned and may then be executed by the user&amp;#39;s client. Various actions could be triggered by running malicious JavaScript code.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-20-252-08</guid>
    </item>
  </channel>
</rss>
