<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:22:41 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-02755</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-02755</link>
      <description>bdu:2025-02755</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-02755</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0114 — De multiples vulnérabilités ont été découvertes dans les produits SAP. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0114</link>
      <description>certfr-2025-avi-0114</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0114</guid>
    </item>
    <item>
      <title>EUVD-2026-214642</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214642</link>
      <description>EUVD-2026-214642</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214642</guid>
    </item>
    <item>
      <title>fkie_cve-2025-23191</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-23191</link>
      <description>&lt;p&gt;Cached values belonging to the SAP OData endpoint in SAP Fiori for SAP ERP could be poisoned by modifying the Host header value in an HTTP GET request. An attacker could alter the `atom:link` values in the returned metadata redirecting them from the SAP server to a malicious link set by the attacker. Successful exploitation could cause low impact on integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cached values belonging to the SAP OData endpoint in SAP Fiori for SAP ERP could be poisoned by modifying the Host header value in an HTTP GET request. An attacker could alter the `atom:link` values in the returned metadata redirecting them from the SAP server to a malicious link set by the attacker. Successful exploitation could cause low impact on integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-23191</guid>
    </item>
    <item>
      <title>GHSA-qjvc-xv7p-qq4h</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qjvc-xv7p-qq4h</link>
      <description>&lt;p&gt;Cached values belonging to the SAP OData endpoint in SAP Fiori for SAP ERP could be poisoned by modifying the Host header value in an HTTP GET request. An attacker could alter the `atom:link` values in the returned metadata redirecting them from the SAP server to a malicious link set by the attacker. Successful exploitation could cause low impact on integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cached values belonging to the SAP OData endpoint in SAP Fiori for SAP ERP could be poisoned by modifying the Host header value in an HTTP GET request. An attacker could alter the `atom:link` values in the returned metadata redirecting them from the SAP server to a malicious link set by the attacker. Successful exploitation could cause low impact on integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qjvc-xv7p-qq4h</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0307 — SAP Patchday Februar 2025: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0307</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um erhöhte Berechtigungen zu erlangen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting- und Spoofing-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen preiszugeben und einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um erhöhte Berechtigungen zu erlangen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting- und Spoofing-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen preiszugeben und einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0307</guid>
    </item>
  </channel>
</rss>
