<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:52:13 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-13871</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-13871</link>
      <description>bdu:2025-13871</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-13871</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0621 — De multiples vulnérabilités ont été découvertes dans Tenable Identity Exposure. Certaines d'entre elles permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0621</link>
      <description>certfr-2025-avi-0621</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0621</guid>
    </item>
    <item>
      <title>EUVD-2026-340576</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-340576</link>
      <description>EUVD-2026-340576</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-340576</guid>
    </item>
    <item>
      <title>fkie_cve-2025-4748</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-4748</link>
      <description>&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;#39;Path Traversal&amp;#39;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.&lt;/p&gt;
&lt;p&gt;This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;#39;Path Traversal&amp;#39;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.&lt;/p&gt;
&lt;p&gt;This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-4748</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-4748 — Absolute path traversal in zip:unzip/1,2</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-4748</link>
      <description>msrc_CVE-2025-4748</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-4748</guid>
    </item>
    <item>
      <title>OESA-2025-1767 — erlang security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1767</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: erlang, openEuler:24.03-LTS-SP2: erlang, openEuler:20.03-LTS-SP4: erlang, openEuler:22.03-LTS-SP3: erlang, openEuler:22.03-LTS-SP4: erlang, openEuler:24.03-LTS: erlang&lt;/p&gt;
&lt;p&gt;Erlang is a general-purpose programming language and runtime
environment. Erlang has built-in support for concurrency, distribution
and fault tolerance. Erlang is used in several large telecommunication
systems from Ericsson.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;amp;apos;Path Traversal&amp;amp;apos;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.&lt;/p&gt;
&lt;p&gt;This issue affects OTP from OTP 17.0 until OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 until 7.0.1, 6.2.2.1 and 5.2.3.4.(CVE-2025-4748)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: erlang, openEuler:24.03-LTS-SP2: erlang, openEuler:20.03-LTS-SP4: erlang, openEuler:22.03-LTS-SP3: erlang, openEuler:22.03-LTS-SP4: erlang, openEuler:24.03-LTS: erlang&lt;/p&gt;
&lt;p&gt;Erlang is a general-purpose programming language and runtime
environment. Erlang has built-in support for concurrency, distribution
and fault tolerance. Erlang is used in several large telecommunication
systems from Ericsson.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;amp;apos;Path Traversal&amp;amp;apos;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed.&lt;/p&gt;
&lt;p&gt;This issue affects OTP from OTP 17.0 until OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 until 7.0.1, 6.2.2.1 and 5.2.3.4.(CVE-2025-4748)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1767</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10947-1 — erlang27-27.1.3-2.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10947-1</link>
      <description>&lt;p&gt;erlang27-27.1.3-2.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;erlang27-27.1.3-2.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10947-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22082-1 — Security update for erlang</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22082-1</link>
      <description>&lt;p&gt;Security update for erlang&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for erlang&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22082-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-4748</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4748</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: erlang, Ubuntu:Pro:16.04:LTS: erlang, Ubuntu:Pro:18.04:LTS: erlang, Ubuntu:Pro:20.04:LTS: erlang, Ubuntu:22.04:LTS: erlang, Ubuntu:24.04:LTS: erlang, Ubuntu:25.10: erlang&lt;/p&gt;
&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;#39;Path Traversal&amp;#39;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed. This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: erlang, Ubuntu:Pro:16.04:LTS: erlang, Ubuntu:Pro:18.04:LTS: erlang, Ubuntu:Pro:20.04:LTS: erlang, Ubuntu:22.04:LTS: erlang, Ubuntu:24.04:LTS: erlang, Ubuntu:25.10: erlang&lt;/p&gt;
&lt;p&gt;Improper Limitation of a Pathname to a Restricted Directory (&amp;#39;Path Traversal&amp;#39;) vulnerability in Erlang OTP (stdlib modules) allows Absolute Path Traversal, File Manipulation. This vulnerability is associated with program files lib/stdlib/src/zip.erl and program routines zip:unzip/1, zip:unzip/2, zip:extract/1, zip:extract/2 unless the memory option is passed. This issue affects OTP from OTP 17.0 before OTP 28.0.1, OTP 27.3.4.1 and OTP 26.2.5.13, corresponding to stdlib from 2.0 before 7.0.1, 6.2.2.1 and 5.2.3.4.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4748</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1333 — Erlang/OTP: Schwachstelle ermöglicht Manipulation von Dateien</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1333</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Erlang/OTP ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Erlang/OTP ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1333</guid>
    </item>
  </channel>
</rss>
