<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 23:30:44 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-10463</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-10463</link>
      <description>bdu:2024-10463</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-10463</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-10524</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-10524</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: wget, Alpaquita:stream: wget&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: wget, Alpaquita:stream: wget&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-10524</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</link>
      <description>certfr-2025-avi-0969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</guid>
    </item>
    <item>
      <title>cnvd-2025-08336</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-08336</link>
      <description>cnvd-2025-08336</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-08336</guid>
    </item>
    <item>
      <title>EUVD-2026-224329</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-224329</link>
      <description>EUVD-2026-224329</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-224329</guid>
    </item>
    <item>
      <title>fkie_cve-2024-10524</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-10524</link>
      <description>&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-10524</guid>
    </item>
    <item>
      <title>GHSA-mqrm-h2pw-9j9r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mqrm-h2pw-9j9r</link>
      <description>&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mqrm-h2pw-9j9r</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-10524 — GNU Wget is vulnerable to an SSRF attack when accessing partially-user-controlled shorthand URLs</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-10524</link>
      <description>msrc_CVE-2024-10524</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-10524</guid>
    </item>
    <item>
      <title>OESA-2024-2497 — wget security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-2497</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: wget, openEuler:20.03-LTS-SP4: wget, openEuler:22.03-LTS-SP1: wget, openEuler:24.03-LTS: wget, openEuler:22.03-LTS-SP4: wget&lt;/p&gt;
&lt;p&gt;GNU Wget is a free software package for retrieving files using HTTP, HTTPS, FTP and FTPS the most widely-used Internet protocols. It is a non-interactive commandline tool, so it may easily be called from scripts, cron jobs, terminals without X-Windows support, etc.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.(CVE-2024-10524)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: wget, openEuler:20.03-LTS-SP4: wget, openEuler:22.03-LTS-SP1: wget, openEuler:24.03-LTS: wget, openEuler:22.03-LTS-SP4: wget&lt;/p&gt;
&lt;p&gt;GNU Wget is a free software package for retrieving files using HTTP, HTTPS, FTP and FTPS the most widely-used Internet protocols. It is a non-interactive commandline tool, so it may easily be called from scripts, cron jobs, terminals without X-Windows support, etc.&#13;
&#13;
Security Fix(es):&#13;
&#13;
Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.(CVE-2024-10524)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-2497</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:14492-1 — wget-1.25.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14492-1</link>
      <description>&lt;p&gt;wget-1.25.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;wget-1.25.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:14492-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:4138-1 — Security update for wget</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:4138-1</link>
      <description>&lt;p&gt;Security update for wget&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for wget&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:4138-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-10524</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-10524</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: wget, Ubuntu:Pro:16.04:LTS: wget, Ubuntu:Pro:18.04:LTS: wget, Ubuntu:Pro:20.04:LTS: wget, Ubuntu:22.04:LTS: wget, Ubuntu:24.04:LTS: wget, Ubuntu:25.10: wget&lt;/p&gt;
&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: wget, Ubuntu:Pro:16.04:LTS: wget, Ubuntu:Pro:18.04:LTS: wget, Ubuntu:Pro:20.04:LTS: wget, Ubuntu:22.04:LTS: wget, Ubuntu:24.04:LTS: wget, Ubuntu:25.10: wget&lt;/p&gt;
&lt;p&gt;Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials which will cause Wget to access an arbitrary host.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-10524</guid>
    </item>
    <item>
      <title>VDE-2025-053 — Phoenix Contact: Multiple Vulnerabilities in PLCnext Firmware</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2025-053</link>
      <description>&lt;p&gt;Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2025-053</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3487 — wget: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen und Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3487</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in wget ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in wget ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3487</guid>
    </item>
  </channel>
</rss>
