<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:25:12 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-359632</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-359632</link>
      <description>EUVD-2026-359632</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-359632</guid>
    </item>
    <item>
      <title>fkie_cve-2023-22460</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-22460</link>
      <description>&lt;p&gt;go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec implementations of IPLD for CBOR and JSON, and tooling for basic operations on IPLD objects. Encoding data which contains a Bytes kind Node will pass a Bytes token to the JSON encoder which will panic as it doesn&amp;#39;t expect to receive Bytes tokens. Such an encode should be treated as an error, as plain JSON should not be able to encode Bytes. This only impacts uses of the `json` codec. `dag-json` is not impacted. Use of `json` as a decoder is not impacted. This issue is fixed in v0.19.0. As a workaround, one may prefer the `dag-json` codec, which has the ability to encode bytes.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;go-ipld-prime is an implementation of the InterPlanetary Linked Data (IPLD) spec interfaces, a batteries-included codec implementations of IPLD for CBOR and JSON, and tooling for basic operations on IPLD objects. Encoding data which contains a Bytes kind Node will pass a Bytes token to the JSON encoder which will panic as it doesn&amp;#39;t expect to receive Bytes tokens. Such an encode should be treated as an error, as plain JSON should not be able to encode Bytes. This only impacts uses of the `json` codec. `dag-json` is not impacted. Use of `json` as a decoder is not impacted. This issue is fixed in v0.19.0. As a workaround, one may prefer the `dag-json` codec, which has the ability to encode bytes.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-22460</guid>
    </item>
    <item>
      <title>GHSA-c653-6hhg-9x92 — go-ipld-prime/codec/json may panic if asked to encode bytes</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c653-6hhg-9x92</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/ipld/go-ipld-prime&lt;/p&gt;
&lt;p&gt;`go-ipld-prime` is a series of Go interfaces for manipulating IPLD data and a Go module that contains the `go-ipld-prime/codec/json` codec.&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Encoding data which contains a `Bytes` kind Node will pass a `Bytes` token to the JSON encoder which will panic as it doesn&amp;#39;t expect to receive `Bytes` tokens. Such an encoding should be treated as an error, as plain JSON should not be able to encode Bytes.&lt;/p&gt;
&lt;p&gt;**This only impacts uses of the &amp;#34;json&amp;#34; codec, &amp;#34;dag-json&amp;#34; is not impacted.** Use of &amp;#34;json&amp;#34; as a decoder is not impacted.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Fixed in v0.19.0.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Prefer the &amp;#34;dag-json&amp;#34; codec which has the ability to [encode bytes](https://ipld.io/specs/codecs/dag-json/spec/#bytes).&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;
&lt;p&gt;See fix in [#472](https://github.com/ipld/go-ipld-prime/pull/472)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/ipld/go-ipld-prime&lt;/p&gt;
&lt;p&gt;`go-ipld-prime` is a series of Go interfaces for manipulating IPLD data and a Go module that contains the `go-ipld-prime/codec/json` codec.&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Encoding data which contains a `Bytes` kind Node will pass a `Bytes` token to the JSON encoder which will panic as it doesn&amp;#39;t expect to receive `Bytes` tokens. Such an encoding should be treated as an error, as plain JSON should not be able to encode Bytes.&lt;/p&gt;
&lt;p&gt;**This only impacts uses of the &amp;#34;json&amp;#34; codec, &amp;#34;dag-json&amp;#34; is not impacted.** Use of &amp;#34;json&amp;#34; as a decoder is not impacted.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Fixed in v0.19.0.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Prefer the &amp;#34;dag-json&amp;#34; codec which has the ability to [encode bytes](https://ipld.io/specs/codecs/dag-json/spec/#bytes).&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;
&lt;p&gt;See fix in [#472](https://github.com/ipld/go-ipld-prime/pull/472)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c653-6hhg-9x92</guid>
    </item>
    <item>
      <title>gsd-2023-22460</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-22460</link>
      <description>gsd-2023-22460</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-22460</guid>
    </item>
  </channel>
</rss>
