<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:24:52 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-06879</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-06879</link>
      <description>bdu:2025-06879</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-06879</guid>
    </item>
    <item>
      <title>EUVD-2026-261632</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-261632</link>
      <description>EUVD-2026-261632</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-261632</guid>
    </item>
    <item>
      <title>fkie_cve-2025-25264</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-25264</link>
      <description>&lt;p&gt;An unauthenticated remote attacker can trick an admin to visit a website containing malicious java script code. The current overly permissive CORS policy allows the attacker to obtain any files from the file system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An unauthenticated remote attacker can trick an admin to visit a website containing malicious java script code. The current overly permissive CORS policy allows the attacker to obtain any files from the file system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-25264</guid>
    </item>
    <item>
      <title>GHSA-rqg6-587c-h9v3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rqg6-587c-h9v3</link>
      <description>&lt;p&gt;An unauthenticated remote attacker can take advantage of the current overly permissive CORS policy to gain access and read the responses, potentially exposing sensitive data or enabling further attacks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An unauthenticated remote attacker can take advantage of the current overly permissive CORS policy to gain access and read the responses, potentially exposing sensitive data or enabling further attacks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rqg6-587c-h9v3</guid>
    </item>
    <item>
      <title>VDE-2025-018 — WAGO: Vulnerabilities in WAGO Device Manager</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2025-018</link>
      <description>&lt;p&gt;Vulnerabilities have been discovered in the WAGO Device Manager that allow any origin to access the server and set header values, as well as an endpoint that permits read access to the file system. The WAGO Device Manager is a software for configuring and parameterizing single WAGO products, which is included in the firmware. These vulnerabilities could be exploited by attackers to send requests and read server responses through crafted web applications or to access the file system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Vulnerabilities have been discovered in the WAGO Device Manager that allow any origin to access the server and set header values, as well as an endpoint that permits read access to the file system. The WAGO Device Manager is a software for configuring and parameterizing single WAGO products, which is included in the firmware. These vulnerabilities could be exploited by attackers to send requests and read server responses through crafted web applications or to access the file system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2025-018</guid>
    </item>
  </channel>
</rss>
