<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 01:18:32 +0000</lastBuildDate>
    <item>
      <title>cnvd-2023-00373</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-00373</link>
      <description>cnvd-2023-00373</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-00373</guid>
    </item>
    <item>
      <title>EUVD-2026-30162</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-30162</link>
      <description>EUVD-2026-30162</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-30162</guid>
    </item>
    <item>
      <title>fkie_cve-2021-38143</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-38143</link>
      <description>&lt;p&gt;An issue was discovered in Form Tools through 3.0.20. When an administrator creates a customer account, it is possible for the customer to log in and proceed with a change of name and last name. However, these fields are vulnerable to XSS payload insertion, being triggered in the admin panel when the admin tries to see the client list. This type of XSS (stored) can lead to the extraction of the PHPSESSID cookie belonging to the admin.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in Form Tools through 3.0.20. When an administrator creates a customer account, it is possible for the customer to log in and proceed with a change of name and last name. However, these fields are vulnerable to XSS payload insertion, being triggered in the admin panel when the admin tries to see the client list. This type of XSS (stored) can lead to the extraction of the PHPSESSID cookie belonging to the admin.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-38143</guid>
    </item>
    <item>
      <title>GHSA-7jr4-xg2j-23mp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7jr4-xg2j-23mp</link>
      <description>&lt;p&gt;An issue was discovered in Form Tools through 3.0.20. When an administrator creates a customer account, it is possible for the customer to log in and proceed with a change of name and last name. However, these fields are vulnerable to XSS payload insertion, being triggered in the admin panel when the admin tries to see the client list. This type of XSS (stored) can lead to the extraction of the PHPSESSID cookie belonging to the admin.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in Form Tools through 3.0.20. When an administrator creates a customer account, it is possible for the customer to log in and proceed with a change of name and last name. However, these fields are vulnerable to XSS payload insertion, being triggered in the admin panel when the admin tries to see the client list. This type of XSS (stored) can lead to the extraction of the PHPSESSID cookie belonging to the admin.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7jr4-xg2j-23mp</guid>
    </item>
    <item>
      <title>gsd-2021-38143</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-38143</link>
      <description>gsd-2021-38143</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-38143</guid>
    </item>
  </channel>
</rss>
