<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:54:09 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0746 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0746</link>
      <description>certfr-2025-avi-0746</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0746</guid>
    </item>
    <item>
      <title>EUVD-2026-247785</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-247785</link>
      <description>EUVD-2026-247785</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-247785</guid>
    </item>
    <item>
      <title>fkie_cve-2025-7338</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-7338</link>
      <description>&lt;p&gt;Multer is a node.js middleware for handling `multipart/form-data`. A vulnerability that is present starting in version 1.4.4-lts.1 and prior to version 2.0.2 allows an attacker to trigger a Denial of Service (DoS) by sending a malformed multi-part upload request. This request causes an unhandled exception, leading to a crash of the process. Users should upgrade to version 2.0.2 to receive a patch. No known workarounds are available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multer is a node.js middleware for handling `multipart/form-data`. A vulnerability that is present starting in version 1.4.4-lts.1 and prior to version 2.0.2 allows an attacker to trigger a Denial of Service (DoS) by sending a malformed multi-part upload request. This request causes an unhandled exception, leading to a crash of the process. Users should upgrade to version 2.0.2 to receive a patch. No known workarounds are available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-7338</guid>
    </item>
    <item>
      <title>GHSA-fjgf-rc76-4x9p — Multer vulnerable to Denial of Service via unhandled exception from malformed request</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fjgf-rc76-4x9p</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: multer&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;A vulnerability in Multer versions &amp;gt;= 1.4.4-lts.1, &amp;lt; 2.0.2 allows an attacker to trigger a Denial of Service (DoS) by sending a malformed request. This request causes an unhandled exception, leading to a crash of the process.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Users should upgrade to `2.0.2`&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;None&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: multer&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;A vulnerability in Multer versions &amp;gt;= 1.4.4-lts.1, &amp;lt; 2.0.2 allows an attacker to trigger a Denial of Service (DoS) by sending a malformed request. This request causes an unhandled exception, leading to a crash of the process.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Users should upgrade to `2.0.2`&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;None&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fjgf-rc76-4x9p</guid>
    </item>
    <item>
      <title>RHSA-2025:14090 — Red Hat Security Advisory: Red Hat Developer Hub 1.7.0 release.</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:14090</link>
      <description>&lt;p&gt;rhdh: Red Hat Developer Hub user permissions pbkdf2: pbkdf2 silently returns predictable key material multer: Multer Denial of Service golang.org/x/net/proxy: golang.org/x/net/http/httpproxy: HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net http-proxy-middleware: Always-Incorrect Control Flow Implementation in http-proxy-middleware http-proxy-middleware: Improper Check for Unusual or Exceptional Conditions in http-proxy-middleware tar-fs: tar-fs has issue where extract can write outside the specified dir with a specific tarball multer: Multer vulnerable to Denial of Service via unhandled exception @node-saml/node-saml: Node-SAML Signature Verification Vulnerability&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;rhdh: Red Hat Developer Hub user permissions pbkdf2: pbkdf2 silently returns predictable key material multer: Multer Denial of Service golang.org/x/net/proxy: golang.org/x/net/http/httpproxy: HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net http-proxy-middleware: Always-Incorrect Control Flow Implementation in http-proxy-middleware http-proxy-middleware: Improper Check for Unusual or Exceptional Conditions in http-proxy-middleware tar-fs: tar-fs has issue where extract can write outside the specified dir with a specific tarball multer: Multer vulnerable to Denial of Service via unhandled exception @node-saml/node-saml: Node-SAML Signature Verification Vulnerability&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:14090</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1854 — HCL BigFix Komponente: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1854</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in HCL BigFix Komponente ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um Daten zu manipulieren, um Informationen offenzulegen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in HCL BigFix Komponente ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um Daten zu manipulieren, um Informationen offenzulegen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1854</guid>
    </item>
  </channel>
</rss>
