<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 11:26:33 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-10543</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-10543</link>
      <description>bdu:2024-10543</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-10543</guid>
    </item>
    <item>
      <title>certfr-2024-avi-1028 — De multiples vulnérabilités ont été découvertes dans Zabbix. Certaines d'entre elles permettent à un attaquant de provo…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1028</link>
      <description>certfr-2024-avi-1028</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-1028</guid>
    </item>
    <item>
      <title>EUVD-2026-205750</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-205750</link>
      <description>EUVD-2026-205750</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-205750</guid>
    </item>
    <item>
      <title>fkie_cve-2024-42327</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-42327</link>
      <description>&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-42327</guid>
    </item>
    <item>
      <title>GHSA-gx59-7g62-6xhg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gx59-7g62-6xhg</link>
      <description>&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gx59-7g62-6xhg</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-42327</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-42327</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: zabbix, Ubuntu:Pro:16.04:LTS: zabbix, Ubuntu:Pro:20.04:LTS: zabbix, Ubuntu:Pro:22.04:LTS: zabbix&lt;/p&gt;
&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: zabbix, Ubuntu:Pro:16.04:LTS: zabbix, Ubuntu:Pro:20.04:LTS: zabbix, Ubuntu:Pro:22.04:LTS: zabbix&lt;/p&gt;
&lt;p&gt;A non-admin user account on the Zabbix frontend with the default User role, or with any other role that gives API access can exploit this vulnerability. An SQLi exists in the CUser class in the addRelatedObjects function, this function is being called from the CUser.get function which is available for every user who has API access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-42327</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3562 — Zabbix: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3562</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Zabbix ausnutzen, um vertrauliche Informationen preiszugeben, einen Denial-of-Service-Zustand zu erzeugen, erhöhte Rechte zu erlangen, beliebigen Code auszuführen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Zabbix ausnutzen, um vertrauliche Informationen preiszugeben, einen Denial-of-Service-Zustand zu erzeugen, erhöhte Rechte zu erlangen, beliebigen Code auszuführen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3562</guid>
    </item>
  </channel>
</rss>
