<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:49:56 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-01709</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-01709</link>
      <description>bdu:2023-01709</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-01709</guid>
    </item>
    <item>
      <title>cnvd-2022-22698</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-22698</link>
      <description>cnvd-2022-22698</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-22698</guid>
    </item>
    <item>
      <title>EUVD-2026-258337</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-258337</link>
      <description>EUVD-2026-258337</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-258337</guid>
    </item>
    <item>
      <title>fkie_cve-2022-24349</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-24349</link>
      <description>&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victim’s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victim’s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-24349</guid>
    </item>
    <item>
      <title>GHSA-vv83-2f3m-pvxg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vv83-2f3m-pvxg</link>
      <description>&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actionsâ€™ pages, and send it to other users.
Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victimâ€™s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actionsâ€™ pages, and send it to other users.
Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victimâ€™s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vv83-2f3m-pvxg</guid>
    </item>
    <item>
      <title>gsd-2022-24349</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-24349</link>
      <description>gsd-2022-24349</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-24349</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:11934-1 — zabbix-agent-4.0.39-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11934-1</link>
      <description>&lt;p&gt;zabbix-agent-4.0.39-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;zabbix-agent-4.0.39-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:11934-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2022:1254-1 — Security update for zabbix</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2022:1254-1</link>
      <description>&lt;p&gt;Security update for zabbix&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for zabbix&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2022:1254-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-24349</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-24349</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: zabbix, Ubuntu:Pro:22.04:LTS: zabbix&lt;/p&gt;
&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victim’s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: zabbix, Ubuntu:Pro:22.04:LTS: zabbix&lt;/p&gt;
&lt;p&gt;An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineering and expiration of a number of factors - an attacker should have authorized access to the Zabbix Frontend and allowed network connection between a malicious server and victim’s computer, understand attacked infrastructure, be recognized by the victim as a trustee and use trusted communication channel.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-24349</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0948 — Zabbix: Mehrere Schwachstellen ermöglichen Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0948</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Zabbix ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Zabbix ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0948</guid>
    </item>
  </channel>
</rss>
