<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 16:29:41 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-328154</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-328154</link>
      <description>EUVD-2026-328154</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-328154</guid>
    </item>
    <item>
      <title>fkie_cve-2026-12117</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-12117</link>
      <description>&lt;p&gt;Improper access control in the social login connection endpoint in 
Devolutions Server 2026.2.5 allows an authenticated vault member to 
enumerate social login entry metadata to which they are not authorized 
via a crafted API request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper access control in the social login connection endpoint in 
Devolutions Server 2026.2.5 allows an authenticated vault member to 
enumerate social login entry metadata to which they are not authorized 
via a crafted API request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-12117</guid>
    </item>
    <item>
      <title>GHSA-j57w-8xwx-5rfg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j57w-8xwx-5rfg</link>
      <description>&lt;p&gt;Improper access control in the social login connection endpoint in 
Devolutions Server 2026.2.5 allows an authenticated vault member to 
enumerate social login entry metadata to which they are not authorized 
via a crafted API request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper access control in the social login connection endpoint in 
Devolutions Server 2026.2.5 allows an authenticated vault member to 
enumerate social login entry metadata to which they are not authorized 
via a crafted API request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j57w-8xwx-5rfg</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1978 — Devolutions Server: Mehrere Schwachstellen ermöglichen Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1978</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Devolutions Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Devolutions Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1978</guid>
    </item>
  </channel>
</rss>
