<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 21:17:04 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-166770</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-166770</link>
      <description>EUVD-2026-166770</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-166770</guid>
    </item>
    <item>
      <title>fkie_cve-2022-25299</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-25299</link>
      <description>&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-25299</guid>
    </item>
    <item>
      <title>GHSA-q66h-r8q8-x284</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q66h-r8q8-x284</link>
      <description>&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q66h-r8q8-x284</guid>
    </item>
    <item>
      <title>gsd-2022-25299</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-25299</link>
      <description>gsd-2022-25299</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-25299</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-25299</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-25299</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: phantomjs, Ubuntu:18.04:LTS: phantomjs, Ubuntu:20.04:LTS: phantomjs&lt;/p&gt;
&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: phantomjs, Ubuntu:18.04:LTS: phantomjs, Ubuntu:20.04:LTS: phantomjs&lt;/p&gt;
&lt;p&gt;This affects the package cesanta/mongoose before 7.6. The unsafe handling of file names during upload using mg_http_upload() method may enable attackers to write files to arbitrary locations outside the designated target folder.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-25299</guid>
    </item>
    <item>
      <title>VDE-2022-033 — Pilz: PASvisu and PMI affected by multiple vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-033</link>
      <description>&lt;p&gt;PASvisu is an HMI solution for Machine Visualization. It is available as a standalone software product, but it is also included in various models of the PMI product family. The PASvisu Server component contains multiple vulnerabilities which can be utilised to write arbitrary files, potentially leading to code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PASvisu is an HMI solution for Machine Visualization. It is available as a standalone software product, but it is also included in various models of the PMI product family. The PASvisu Server component contains multiple vulnerabilities which can be utilised to write arbitrary files, potentially leading to code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-033</guid>
    </item>
  </channel>
</rss>
