<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 10:54:17 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-192011</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-192011</link>
      <description>EUVD-2026-192011</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-192011</guid>
    </item>
    <item>
      <title>fkie_cve-2023-39343</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-39343</link>
      <description>&lt;p&gt;Sulu is an open-source PHP content management system based on the Symfony framework. It allows over the Admin Login form to detect which user (username, email) exists and which one do not exist. Sulu Installation not using the old Symfony 5.4 security System and previous version are not impacted by this Security issue. The vulnerability has been patched in version 2.5.10.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Sulu is an open-source PHP content management system based on the Symfony framework. It allows over the Admin Login form to detect which user (username, email) exists and which one do not exist. Sulu Installation not using the old Symfony 5.4 security System and previous version are not impacted by this Security issue. The vulnerability has been patched in version 2.5.10.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-39343</guid>
    </item>
    <item>
      <title>GHSA-wmwf-49vv-p3mr — Sulu Observable Response Discrepancy on Admin Login</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wmwf-49vv-p3mr</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: sulu/sulu&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;It allows over the Admin Login form to detect which user (username, email) exists and which one do not exist.&lt;/p&gt;
&lt;p&gt;Impacted by this issue are Sulu installation &amp;gt;= 2.5.0 and &amp;lt;2.5.10 using the newer Symfony Security System which is default since Symfony 6.0 but can be enabled in Symfony 5.4. Sulu Installation not using the old Symfony 5.4 security System and previous version are not impacted by this Security issue.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;The problem has been patched in version 2.5.10.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Create a custom AuthenticationFailureHandler which does not return the `$exception-&amp;gt;getMessage();` instead the `$exception-&amp;gt;getMessageKey();`&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;
&lt;p&gt;Currently no references.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: sulu/sulu&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;It allows over the Admin Login form to detect which user (username, email) exists and which one do not exist.&lt;/p&gt;
&lt;p&gt;Impacted by this issue are Sulu installation &amp;gt;= 2.5.0 and &amp;lt;2.5.10 using the newer Symfony Security System which is default since Symfony 6.0 but can be enabled in Symfony 5.4. Sulu Installation not using the old Symfony 5.4 security System and previous version are not impacted by this Security issue.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;The problem has been patched in version 2.5.10.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Create a custom AuthenticationFailureHandler which does not return the `$exception-&amp;gt;getMessage();` instead the `$exception-&amp;gt;getMessageKey();`&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;
&lt;p&gt;Currently no references.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wmwf-49vv-p3mr</guid>
    </item>
    <item>
      <title>gsd-2023-39343</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-39343</link>
      <description>gsd-2023-39343</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-39343</guid>
    </item>
  </channel>
</rss>
