<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 07:46:56 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-00961</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-00961</link>
      <description>bdu:2023-00961</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-00961</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0163 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Chrome&lt;/span&gt;. Elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0163</link>
      <description>certfr-2023-avi-0163</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0163</guid>
    </item>
    <item>
      <title>EUVD-2026-237285</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-237285</link>
      <description>EUVD-2026-237285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-237285</guid>
    </item>
    <item>
      <title>fkie_cve-2023-0933</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-0933</link>
      <description>&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-0933</guid>
    </item>
    <item>
      <title>GHSA-qv8x-242h-q5r6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qv8x-242h-q5r6</link>
      <description>&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qv8x-242h-q5r6</guid>
    </item>
    <item>
      <title>gsd-2023-0933</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-0933</link>
      <description>gsd-2023-0933</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-0933</guid>
    </item>
    <item>
      <title>ICSA-23-320-09 — Siemens COMOS</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-23-320-09</link>
      <description>&lt;p&gt;MPXJ through 8.1.3 allows XXE attacks. This affects the GanttProjectReader and PhoenixReader components. common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations. Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.2) is vulnerable&#13;
to an out-of-bounds read when rendering DWG files after they are opened in the recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading DWG files in a recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all  versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading a DWG file with invalid vertex number in a recovery mode. This could allow an attacker to execute code in the context of the current process. Integer overflow in PDFium library used in COMOS allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. Use after free in PDFium library used in COMOS allowed a remote attacker…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MPXJ through 8.1.3 allows XXE attacks. This affects the GanttProjectReader and PhoenixReader components. common/InputStreamHelper.java in Packwood MPXJ before 8.3.5 allows directory traversal in the zip stream handler flow, leading to the writing of files to arbitrary locations. Open Design Alliance Drawings SDK before 2022.12.1 mishandles the loading of JPG files. Unchecked input data from a crafted JPG file leads to memory corruption. An attacker can leverage this vulnerability to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.2) is vulnerable&#13;
to an out-of-bounds read when rendering DWG files after they are opened in the recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading DWG files in a recovery mode. This could allow an attacker to execute code in the context of the current process. Open Design Alliance Drawings SDK (all  versions prior to 2023.3) is vulnerable to an out-of-bounds read when reading a DWG file with invalid vertex number in a recovery mode. This could allow an attacker to execute code in the context of the current process. Integer overflow in PDFium library used in COMOS allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. Use after free in PDFium library used in COMOS allowed a remote attacker…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-23-320-09</guid>
    </item>
    <item>
      <title>openSUSE-SU-2023:0061-1 — Security update for chromium</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2023:0061-1</link>
      <description>&lt;p&gt;Security update for chromium&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for chromium&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2023:0061-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-0933</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-0933</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: chromium-browser&lt;/p&gt;
&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: chromium-browser&lt;/p&gt;
&lt;p&gt;Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-0933</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0465 — Google Chrome und Microsoft Edge: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0465</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Chrome und Microsoft Edge ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Chrome und Microsoft Edge ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0465</guid>
    </item>
  </channel>
</rss>
