<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 14:46:41 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0224 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0224</link>
      <description>certfr-2026-avi-0224</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0224</guid>
    </item>
    <item>
      <title>EUVD-2026-358594</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-358594</link>
      <description>EUVD-2026-358594</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-358594</guid>
    </item>
    <item>
      <title>fkie_cve-2026-1615</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-1615</link>
      <description>&lt;p&gt;Versions of the package jsonpath before 1.3.0 are vulnerable to Arbitrary Code Injection via unsafe evaluation of user-supplied JSON Path expressions. The library relies on the static-eval module to process JSON Path input, which is not designed to handle untrusted data safely. An attacker can exploit this vulnerability by supplying a malicious JSON Path expression that, when evaluated, executes arbitrary JavaScript code, leading to Remote Code Execution in Node.js environments or Cross-site Scripting (XSS) in browser contexts. This affects all methods that evaluate JSON Paths against objects, including .query, .nodes, .paths, .value, .parent, and .apply.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Versions of the package jsonpath before 1.3.0 are vulnerable to Arbitrary Code Injection via unsafe evaluation of user-supplied JSON Path expressions. The library relies on the static-eval module to process JSON Path input, which is not designed to handle untrusted data safely. An attacker can exploit this vulnerability by supplying a malicious JSON Path expression that, when evaluated, executes arbitrary JavaScript code, leading to Remote Code Execution in Node.js environments or Cross-site Scripting (XSS) in browser contexts. This affects all methods that evaluate JSON Paths against objects, including .query, .nodes, .paths, .value, .parent, and .apply.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-1615</guid>
    </item>
    <item>
      <title>GHSA-87r5-mp6g-5w5j — jsonpath has Arbitrary Code Injection via Unsafe Evaluation of JSON Path Expressions</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-87r5-mp6g-5w5j</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: jsonpath&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;**Arbitrary Code Injection (Remote Code Execution &amp;amp; XSS):**&lt;/p&gt;
&lt;p&gt;A critical security vulnerability affects **all versions** of the `jsonpath` package. The library relies on the `static-eval` module to evaluate JSON Path expressions but fails to properly sanitize or sandbox the input.&lt;/p&gt;
&lt;p&gt;This allows an attacker to inject arbitrary JavaScript code into the JSON Path expression. When the library evaluates this expression, the malicious code is executed.&lt;/p&gt;
&lt;p&gt;* **Node.js Environments:** This leads to **Remote Code Execution (RCE)**, allowing an attacker to compromise the server.
* **Browser Environments:** This leads to **Cross-Site Scripting (XSS)**, allowing an attacker to hijack user sessions or exfiltrate data.&lt;/p&gt;
&lt;p&gt;**Affected Methods:**&lt;/p&gt;
&lt;p&gt;The vulnerability triggers when untrusted data is passed to any method that evaluates a path, including:&lt;/p&gt;
&lt;p&gt;* `jsonpath.query`
* `jsonpath.nodes`
* `jsonpath.paths`
* `jsonpath.value`
* `jsonpath.parent`
* `jsonpath.apply`&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;**No Patch Available:**&lt;/p&gt;
&lt;p&gt;Currently, **all versions** of `jsonpath` are vulnerable. There is no known patched version of this package that resolves the issue while retaining the current architecture.&lt;/p&gt;
&lt;p&gt;**Recommendation:**&lt;/p&gt;
&lt;p&gt;Developers are strongly advised to **migrate to a secure alternative** (such as `jsonpath-plus` or similar libraries that do not use `eval`/`static-eval`) or strictly validate all JSON Path inputs against a known allowlist.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;* **Strict Input Validation:** Ensure that no user-sup…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: jsonpath&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;**Arbitrary Code Injection (Remote Code Execution &amp;amp; XSS):**&lt;/p&gt;
&lt;p&gt;A critical security vulnerability affects **all versions** of the `jsonpath` package. The library relies on the `static-eval` module to evaluate JSON Path expressions but fails to properly sanitize or sandbox the input.&lt;/p&gt;
&lt;p&gt;This allows an attacker to inject arbitrary JavaScript code into the JSON Path expression. When the library evaluates this expression, the malicious code is executed.&lt;/p&gt;
&lt;p&gt;* **Node.js Environments:** This leads to **Remote Code Execution (RCE)**, allowing an attacker to compromise the server.
* **Browser Environments:** This leads to **Cross-Site Scripting (XSS)**, allowing an attacker to hijack user sessions or exfiltrate data.&lt;/p&gt;
&lt;p&gt;**Affected Methods:**&lt;/p&gt;
&lt;p&gt;The vulnerability triggers when untrusted data is passed to any method that evaluates a path, including:&lt;/p&gt;
&lt;p&gt;* `jsonpath.query`
* `jsonpath.nodes`
* `jsonpath.paths`
* `jsonpath.value`
* `jsonpath.parent`
* `jsonpath.apply`&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;**No Patch Available:**&lt;/p&gt;
&lt;p&gt;Currently, **all versions** of `jsonpath` are vulnerable. There is no known patched version of this package that resolves the issue while retaining the current architecture.&lt;/p&gt;
&lt;p&gt;**Recommendation:**&lt;/p&gt;
&lt;p&gt;Developers are strongly advised to **migrate to a secure alternative** (such as `jsonpath-plus` or similar libraries that do not use `eval`/`static-eval`) or strictly validate all JSON Path inputs against a known allowlist.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;* **Strict Input Validation:** Ensure that no user-sup…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-87r5-mp6g-5w5j</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:20239-1 — Security update for golang-github-prometheus-prometheus</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20239-1</link>
      <description>&lt;p&gt;Security update for golang-github-prometheus-prometheus&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for golang-github-prometheus-prometheus&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:20239-1</guid>
    </item>
    <item>
      <title>RHSA-2026:59155 — Red Hat Security Advisory: Red Hat Ansible Automation Platform 2.6 Container Release Update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:59155</link>
      <description>&lt;p&gt;axios: Axios: Server-Side Request Forgery and proxy bypass due to improper hostname normalization aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb aiohttp: aiohttp: Denial of Service via specially crafted POST request aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request jsonpath: jsonpath: Arbitrary Code Execution via unsafe JSON Path expression evaluation webpack-dev-server: webpack-dev-server: Information disclosure and denial of service via improper proxy configuration form-data: form-data: Form field override via CRLF injection brace-expansion: Brace-expansion: Denial of Service via memory exhaustion in expand() function django: Django: Remote code execution via GeoDjango spatial lookups daphne: daphne: Denial of Service via excessive WebSocket message size tmp: path Traversal via unsanitized prefix/postfix enables directory escape pyasn1: pyasn1: Denial of Service via crafted ASN.1 REAL values gitpython: GitPython: Command Injection via Git option prefix abbreviation brace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-2026-14257 mitigation aiohttp: AIOHTTP: HTTP Request Smuggling via WebSocket Upgrade aiohttp: AIOHTTP: Denial of Service via malformed HTTP responses awx: project archive extraction allows path traversal file writes awx: webhook status callback SSRF leaks the Git PAT awx: notification backends allow SSRF and credential leakage&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;axios: Axios: Server-Side Request Forgery and proxy bypass due to improper hostname normalization aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb aiohttp: aiohttp: Denial of Service via specially crafted POST request aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request jsonpath: jsonpath: Arbitrary Code Execution via unsafe JSON Path expression evaluation webpack-dev-server: webpack-dev-server: Information disclosure and denial of service via improper proxy configuration form-data: form-data: Form field override via CRLF injection brace-expansion: Brace-expansion: Denial of Service via memory exhaustion in expand() function django: Django: Remote code execution via GeoDjango spatial lookups daphne: daphne: Denial of Service via excessive WebSocket message size tmp: path Traversal via unsanitized prefix/postfix enables directory escape pyasn1: pyasn1: Denial of Service via crafted ASN.1 REAL values gitpython: GitPython: Command Injection via Git option prefix abbreviation brace-expansion: DoS via unbounded intermediate arrays, bypassing the CVE-2026-14257 mitigation aiohttp: AIOHTTP: HTTP Request Smuggling via WebSocket Upgrade aiohttp: AIOHTTP: Denial of Service via malformed HTTP responses awx: project archive extraction allows path traversal file writes awx: webhook status callback SSRF leaks the Git PAT awx: notification backends allow SSRF and credential leakage&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:59155</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:1013-1 — Security update 5.0.7 for Multi-Linux Manager Client Tools</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:1013-1</link>
      <description>&lt;p&gt;Security update 5.0.7 for Multi-Linux Manager Client Tools&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update 5.0.7 for Multi-Linux Manager Client Tools&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:1013-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0895 — IBM App Connect Enterprise: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0895</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM App Connect Enterprise ausnutzen, um Dateien zu manipulieren, um einen Denial of Service Angriff durchzuführen, um beliebigen Programmcode auszuführen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM App Connect Enterprise ausnutzen, um Dateien zu manipulieren, um einen Denial of Service Angriff durchzuführen, um beliebigen Programmcode auszuführen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0895</guid>
    </item>
  </channel>
</rss>
