<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:40:38 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0957 — De multiples vulnérabilités ont été découvertes dans Moodle. Certaines d'entre elles permettent à un attaquant de provo…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0957</link>
      <description>certfr-2025-avi-0957</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0957</guid>
    </item>
    <item>
      <title>EUVD-2026-249274</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-249274</link>
      <description>EUVD-2026-249274</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-249274</guid>
    </item>
    <item>
      <title>fkie_cve-2025-54869</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-54869</link>
      <description>&lt;p&gt;FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. In versions 2.6.2 and below, any application that uses FPDI to process user-supplied PDF files is at risk, causing a Denial of Service (DoS) vulnerability. An attacker can upload a small, malicious PDF file that will cause the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained service unavailability. This issue is fixed in version 2.6.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. In versions 2.6.2 and below, any application that uses FPDI to process user-supplied PDF files is at risk, causing a Denial of Service (DoS) vulnerability. An attacker can upload a small, malicious PDF file that will cause the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained service unavailability. This issue is fixed in version 2.6.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-54869</guid>
    </item>
    <item>
      <title>GHSA-jxhh-4648-vpp3 — FPDI allows Memory Exhaustion (OOM) in PDF Parser which leads to Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jxhh-4648-vpp3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: setasign/fpdi&lt;/p&gt;
&lt;p&gt;### Impact
This is a significant Denial of Service (DoS) vulnerability. Any application that uses FPDI to process
user-supplied PDF files is at risk. An attacker can upload a small, malicious PDF file that will cause
the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained
service unavailability.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed as of version 2.6.4&lt;/p&gt;
&lt;p&gt;### Workarounds
No.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: setasign/fpdi&lt;/p&gt;
&lt;p&gt;### Impact
This is a significant Denial of Service (DoS) vulnerability. Any application that uses FPDI to process
user-supplied PDF files is at risk. An attacker can upload a small, malicious PDF file that will cause
the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained
service unavailability.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed as of version 2.6.4&lt;/p&gt;
&lt;p&gt;### Workarounds
No.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jxhh-4648-vpp3</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-54869</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-54869</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: icingaweb2-module-pdfexport, Ubuntu:24.04:LTS: icingaweb2-module-pdfexport, Ubuntu:25.10: icingaweb2-module-pdfexport, Ubuntu:26.04:LTS: icingaweb2-module-pdfexport&lt;/p&gt;
&lt;p&gt;FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. In versions 2.6.2 and below, any application that uses FPDI to process user-supplied PDF files is at risk, causing a Denial of Service (DoS) vulnerability. An attacker can upload a small, malicious PDF file that will cause the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained service unavailability. This issue is fixed in version 2.6.3.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: icingaweb2-module-pdfexport, Ubuntu:24.04:LTS: icingaweb2-module-pdfexport, Ubuntu:25.10: icingaweb2-module-pdfexport, Ubuntu:26.04:LTS: icingaweb2-module-pdfexport&lt;/p&gt;
&lt;p&gt;FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. In versions 2.6.2 and below, any application that uses FPDI to process user-supplied PDF files is at risk, causing a Denial of Service (DoS) vulnerability. An attacker can upload a small, malicious PDF file that will cause the server-side script to crash due to memory exhaustion. Repeated attacks can lead to sustained service unavailability. This issue is fixed in version 2.6.3.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-54869</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2272 — Moodle: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2272</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Moodle ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Moodle ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2272</guid>
    </item>
  </channel>
</rss>
