<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 20:00:06 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-16414</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-16414</link>
      <description>bdu:2025-16414</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-16414</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0896 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0896</link>
      <description>certfr-2025-avi-0896</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0896</guid>
    </item>
    <item>
      <title>EUVD-2026-246688</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-246688</link>
      <description>EUVD-2026-246688</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-246688</guid>
    </item>
    <item>
      <title>fkie_cve-2025-49826</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-49826</link>
      <description>&lt;p&gt;Next.js is a React framework for building full-stack web applications. From versions 15.0.4-canary.51 to before 15.1.8, a cache poisoning bug leading to a Denial of Service (DoS) condition was found in Next.js. This issue does not impact customers hosted on Vercel. Under certain conditions, this issue may allow a HTTP 204 response to be cached for static pages, leading to the 204 response being served to all users attempting to access the page. This issue has been addressed in version 15.1.8.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Next.js is a React framework for building full-stack web applications. From versions 15.0.4-canary.51 to before 15.1.8, a cache poisoning bug leading to a Denial of Service (DoS) condition was found in Next.js. This issue does not impact customers hosted on Vercel. Under certain conditions, this issue may allow a HTTP 204 response to be cached for static pages, leading to the 204 response being served to all users attempting to access the page. This issue has been addressed in version 15.1.8.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-49826</guid>
    </item>
    <item>
      <title>GHSA-67rr-84xm-4c7r — Next.JS vulnerability can lead to DoS via cache poisoning</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-67rr-84xm-4c7r</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: next&lt;/p&gt;
&lt;p&gt;### Summary
A vulnerability affecting Next.js has been addressed. It impacted versions 15.0.4 through 15.1.8 and involved a cache poisoning bug leading to a Denial of Service (DoS) condition.&lt;/p&gt;
&lt;p&gt;Under certain conditions, this issue may allow a HTTP 204 response to be cached for static pages, leading to the 204 response being served to all users attempting to access the page&lt;/p&gt;
&lt;p&gt;More details: [CVE-2025-49826](https://vercel.com/changelog/cve-2025-49826)&lt;/p&gt;
&lt;p&gt;## Credits
- Allam Rachid [zhero;](https://zhero-web-sec.github.io/research-and-things/)
- Allam Yasser (inzo)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: next&lt;/p&gt;
&lt;p&gt;### Summary
A vulnerability affecting Next.js has been addressed. It impacted versions 15.0.4 through 15.1.8 and involved a cache poisoning bug leading to a Denial of Service (DoS) condition.&lt;/p&gt;
&lt;p&gt;Under certain conditions, this issue may allow a HTTP 204 response to be cached for static pages, leading to the 204 response being served to all users attempting to access the page&lt;/p&gt;
&lt;p&gt;More details: [CVE-2025-49826](https://vercel.com/changelog/cve-2025-49826)&lt;/p&gt;
&lt;p&gt;## Credits
- Allam Rachid [zhero;](https://zhero-web-sec.github.io/research-and-things/)
- Allam Yasser (inzo)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-67rr-84xm-4c7r</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1456 — Vercel Next.js: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1456</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Vercel Next.js ausnutzen, um falsche Informationen darzustellen oder einen Denial of Service Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Vercel Next.js ausnutzen, um falsche Informationen darzustellen oder einen Denial of Service Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1456</guid>
    </item>
  </channel>
</rss>
