<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:55:50 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-263478</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-263478</link>
      <description>EUVD-2026-263478</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-263478</guid>
    </item>
    <item>
      <title>fkie_cve-2025-66626</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-66626</link>
      <description>&lt;p&gt;Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Versions 3.6.13 and below and versions 3.7.0 through 3.7.4, contain unsafe untar code that handles symbolic links in archives. Concretely, the computation of a link&amp;#39;s target and the subsequent check are flawed. An attacker can overwrite the file /var/run/argo/argoexec with a script of their choice, which would be executed at the pod&amp;#39;s start. The patch deployed against CVE-2025-62156 is ineffective against malicious archives containing symbolic links. This issue is fixed in versions 3.6.14 and 3.7.5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Versions 3.6.13 and below and versions 3.7.0 through 3.7.4, contain unsafe untar code that handles symbolic links in archives. Concretely, the computation of a link&amp;#39;s target and the subsequent check are flawed. An attacker can overwrite the file /var/run/argo/argoexec with a script of their choice, which would be executed at the pod&amp;#39;s start. The patch deployed against CVE-2025-62156 is ineffective against malicious archives containing symbolic links. This issue is fixed in versions 3.6.14 and 3.7.5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-66626</guid>
    </item>
    <item>
      <title>GHSA-xrqc-7xgx-c9vh — RCE via ZipSlip and symbolic links in argoproj/argo-workflows</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xrqc-7xgx-c9vh</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/argoproj/argo-workflows/v3, Go: github.com/argoproj/argo-workflows&lt;/p&gt;
&lt;p&gt;### Summary
The patch deployed against CVE-2025-62156 is ineffective against malicious archives containing symbolic links.&lt;/p&gt;
&lt;p&gt;### Details
The untar code that handles symbolic links in archives is unsafe. Concretely, the computation of the link&amp;#39;s target and the subsequent check are flawed: 
https://github.com/argoproj/argo-workflows/blob/5291e0b01f94ba864f96f795bb500f2cfc5ad799/workflow/executor/executor.go#L1034-L1037&lt;/p&gt;
&lt;p&gt;### PoC
1. Create a malicious archive containing two files: a symbolik link with path &amp;#34;./work/foo&amp;#34; and target &amp;#34;/etc&amp;#34;, and a normal text file with path &amp;#34;./work/foo/hostname&amp;#34;.
2. Deploy a workflow like the one in https://github.com/argoproj/argo-workflows/security/advisories/GHSA-p84v-gxvw-73pf with the malicious archive mounted at /work/tmp.
3. Submit the workflow and wait for its execution. 
4. Connect to the corresponding pod and observe that the file &amp;#34;/etc/hostname&amp;#34; was altered by the untar operation performed on the malicious archive. The attacker can hence alter arbitrary files in this way.&lt;/p&gt;
&lt;p&gt;### Impact
The attacker can overwrite the file /var/run/argo/argoexec with a script of their choice, which will be executed at the pod&amp;#39;s start.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/argoproj/argo-workflows/v3, Go: github.com/argoproj/argo-workflows&lt;/p&gt;
&lt;p&gt;### Summary
The patch deployed against CVE-2025-62156 is ineffective against malicious archives containing symbolic links.&lt;/p&gt;
&lt;p&gt;### Details
The untar code that handles symbolic links in archives is unsafe. Concretely, the computation of the link&amp;#39;s target and the subsequent check are flawed: 
https://github.com/argoproj/argo-workflows/blob/5291e0b01f94ba864f96f795bb500f2cfc5ad799/workflow/executor/executor.go#L1034-L1037&lt;/p&gt;
&lt;p&gt;### PoC
1. Create a malicious archive containing two files: a symbolik link with path &amp;#34;./work/foo&amp;#34; and target &amp;#34;/etc&amp;#34;, and a normal text file with path &amp;#34;./work/foo/hostname&amp;#34;.
2. Deploy a workflow like the one in https://github.com/argoproj/argo-workflows/security/advisories/GHSA-p84v-gxvw-73pf with the malicious archive mounted at /work/tmp.
3. Submit the workflow and wait for its execution. 
4. Connect to the corresponding pod and observe that the file &amp;#34;/etc/hostname&amp;#34; was altered by the untar operation performed on the malicious archive. The attacker can hence alter arbitrary files in this way.&lt;/p&gt;
&lt;p&gt;### Impact
The attacker can overwrite the file /var/run/argo/argoexec with a script of their choice, which will be executed at the pod&amp;#39;s start.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xrqc-7xgx-c9vh</guid>
    </item>
    <item>
      <title>RHSA-2026:2106 — Red Hat Security Advisory: RHOAI 2.25.2 - Red Hat OpenShift AI</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:2106</link>
      <description>&lt;p&gt;llama-stack-k8s-operator: Llama Stack service exposed across namespaces due to missing NetworkPolicy node-forge: node-forge: Interpretation conflict vulnerability allows bypassing cryptographic verifications runc: opencontainers/selinux: container escape and denial of service due to arbitrary write gadgets and procfs write redirects fonttools: fontTools: Arbitrary file write leading to remote code execution via malicious .designspace file urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion urllib3: urllib3 Streaming API improperly handles highly compressed data github.com/sigstore/fulcio: Fulcio: Denial of Service via crafted OpenID Connect (OIDC) token github.com/argoproj/argo-workflows: argoproj/argo-workflows is vulnerable to RCE via ZipSlip and symbolic links tornado: Tornado Quadratic DoS via Repeated Header Coalescing tornado: Tornado Quadratic DoS via Crafted Multipart Parameters github.com/expr-lang/expr: Expr: Denial of Service via uncontrolled recursion in expression evaluation github.com/kedacore/keda: KEDA: Arbitrary file read vulnerability in Vault authentication aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (streaming API) wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;llama-stack-k8s-operator: Llama Stack service exposed across namespaces due to missing NetworkPolicy node-forge: node-forge: Interpretation conflict vulnerability allows bypassing cryptographic verifications runc: opencontainers/selinux: container escape and denial of service due to arbitrary write gadgets and procfs write redirects fonttools: fontTools: Arbitrary file write leading to remote code execution via malicious .designspace file urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion urllib3: urllib3 Streaming API improperly handles highly compressed data github.com/sigstore/fulcio: Fulcio: Denial of Service via crafted OpenID Connect (OIDC) token github.com/argoproj/argo-workflows: argoproj/argo-workflows is vulnerable to RCE via ZipSlip and symbolic links tornado: Tornado Quadratic DoS via Repeated Header Coalescing tornado: Tornado Quadratic DoS via Crafted Multipart Parameters github.com/expr-lang/expr: Expr: Denial of Service via uncontrolled recursion in expression evaluation github.com/kedacore/keda: KEDA: Arbitrary file read vulnerability in Vault authentication aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb urllib3: urllib3 vulnerable to decompression-bomb safeguard bypass when following HTTP redirects (streaming API) wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:2106</guid>
    </item>
  </channel>
</rss>
