<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 22:28:50 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-228793</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-228793</link>
      <description>EUVD-2026-228793</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-228793</guid>
    </item>
    <item>
      <title>fkie_cve-2025-32807</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-32807</link>
      <description>&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-32807</guid>
    </item>
    <item>
      <title>GHSA-chj6-x555-wh22</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-chj6-x555-wh22</link>
      <description>&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-chj6-x555-wh22</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-32807</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-32807</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: fusiondirectory, Ubuntu:18.04:LTS: fusiondirectory, Ubuntu:20.04:LTS: fusiondirectory, Ubuntu:22.04:LTS: fusiondirectory&lt;/p&gt;
&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: fusiondirectory, Ubuntu:18.04:LTS: fusiondirectory, Ubuntu:20.04:LTS: fusiondirectory, Ubuntu:22.04:LTS: fusiondirectory&lt;/p&gt;
&lt;p&gt;A path traversal vulnerability in FusionDirectory before 1.5 allows remote attackers to read arbitrary files on the host that end with .png (and .svg or .xpm for some configurations) via the icon parameter of a GET request to geticon.php.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-32807</guid>
    </item>
  </channel>
</rss>
