<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:16:58 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0114 — De multiples vulnérabilités ont été découvertes dans les produits SAP. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0114</link>
      <description>certfr-2025-avi-0114</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0114</guid>
    </item>
    <item>
      <title>cnvd-2025-03435</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-03435</link>
      <description>cnvd-2025-03435</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-03435</guid>
    </item>
    <item>
      <title>EUVD-2026-218554</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-218554</link>
      <description>EUVD-2026-218554</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-218554</guid>
    </item>
    <item>
      <title>fkie_cve-2025-24876</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-24876</link>
      <description>&lt;p&gt;The SAP Approuter Node.js package version v16.7.1 and before is vulnerable to Authentication bypass. When trading an authorization code an attacker can steal the session of the victim by injecting malicious payload causing High impact on confidentiality and integrity of the application&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SAP Approuter Node.js package version v16.7.1 and before is vulnerable to Authentication bypass. When trading an authorization code an attacker can steal the session of the victim by injecting malicious payload causing High impact on confidentiality and integrity of the application&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-24876</guid>
    </item>
    <item>
      <title>GHSA-cpfx-964w-4jvp — Authentication bypass in @sap/approuter</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cpfx-964w-4jvp</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @sap/approuter&lt;/p&gt;
&lt;p&gt;The SAP Approuter Node.js package version v16.7.1 and before is vulnerable to Authentication bypass. When trading an authorization code, an attacker can steal the session of the victim by injecting malicious payload, causing High impact on confidentiality and integrity of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @sap/approuter&lt;/p&gt;
&lt;p&gt;The SAP Approuter Node.js package version v16.7.1 and before is vulnerable to Authentication bypass. When trading an authorization code, an attacker can steal the session of the victim by injecting malicious payload, causing High impact on confidentiality and integrity of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cpfx-964w-4jvp</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0307 — SAP Patchday Februar 2025: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0307</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um erhöhte Berechtigungen zu erlangen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting- und Spoofing-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen preiszugeben und einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in der SAP-Software ausnutzen, um erhöhte Berechtigungen zu erlangen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting- und Spoofing-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen preiszugeben und einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0307</guid>
    </item>
  </channel>
</rss>
