<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 09:56:47 +0000</lastBuildDate>
    <item>
      <title>DRUPAL-CONTRIB-2025-108</title>
      <link>https://cve.radiocsirt.org/vuln/drupal-contrib-2025-108</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist:https://packages.drupal.org/8: drupal/access_code&lt;/p&gt;
&lt;p&gt;This module enables users to sign in with an access code instead of entering user names and passwords. When users are allowed to pick their own access codes, they can guess other users&amp;#39; access codes based on the fact that access codes need to be unique and the system warns if the code of their choice is taken.&lt;/p&gt;
&lt;p&gt;This vulnerability is mitigated by the fact that an attacker must have a role with the &amp;#34;change own access code&amp;#34; permission.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist:https://packages.drupal.org/8: drupal/access_code&lt;/p&gt;
&lt;p&gt;This module enables users to sign in with an access code instead of entering user names and passwords. When users are allowed to pick their own access codes, they can guess other users&amp;#39; access codes based on the fact that access codes need to be unique and the system warns if the code of their choice is taken.&lt;/p&gt;
&lt;p&gt;This vulnerability is mitigated by the fact that an attacker must have a role with the &amp;#34;change own access code&amp;#34; permission.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/drupal-contrib-2025-108</guid>
    </item>
    <item>
      <title>EUVD-2026-257169</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-257169</link>
      <description>EUVD-2026-257169</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-257169</guid>
    </item>
    <item>
      <title>fkie_cve-2025-10928</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-10928</link>
      <description>&lt;p&gt;Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force.This issue affects Access code: from 0.0.0 before 2.0.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force.This issue affects Access code: from 0.0.0 before 2.0.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-10928</guid>
    </item>
    <item>
      <title>GHSA-27mc-9399-r9mx — Drupal Access code allows Brute Force Attempts</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-27mc-9399-r9mx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: drupal/access_code&lt;/p&gt;
&lt;p&gt;Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force. This issue affects Access code: from 0.0.0 before 2.0.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: drupal/access_code&lt;/p&gt;
&lt;p&gt;Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Access code allows Brute Force. This issue affects Access code: from 0.0.0 before 2.0.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-27mc-9399-r9mx</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2126 — Drupal Module: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2126</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Drupal Module ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen, um Sicherheitsvorkehrungen zu umgehen, und um falsche Informationen darzustellen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Drupal Module ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen, um Sicherheitsvorkehrungen zu umgehen, und um falsche Informationen darzustellen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2126</guid>
    </item>
  </channel>
</rss>
