<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 03:44:44 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:1902 — Important: python-wheel security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:1902</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: python3-wheel, AlmaLinux:10: python3-wheel-wheel&lt;/p&gt;
&lt;p&gt;Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking (CVE-2026-24049)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: python3-wheel, AlmaLinux:10: python3-wheel-wheel&lt;/p&gt;
&lt;p&gt;Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking (CVE-2026-24049)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:1902</guid>
    </item>
    <item>
      <title>bdu:2026-03593</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-03593</link>
      <description>bdu:2026-03593</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-03593</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-24049</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-24049</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: py3-wheel, Alpaquita:stream: py3-wheel, BellSoft Hardened Containers:25: py3-wheel, BellSoft Hardened Containers:stream: py3-wheel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: py3-wheel, Alpaquita:stream: py3-wheel, BellSoft Hardened Containers:25: py3-wheel, BellSoft Hardened Containers:stream: py3-wheel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-24049</guid>
    </item>
    <item>
      <title>BREW-aws-sam-cli-CVE-2026-24049 — Wheel Affected by Arbitrary File Permission Modification via Path Traversal in wheel unpack</title>
      <link>https://cve.radiocsirt.org/vuln/brew-aws-sam-cli-cve-2026-24049</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: aws-sam-cli&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: aws-sam-cli&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-aws-sam-cli-cve-2026-24049</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0326 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0326</link>
      <description>certfr-2026-avi-0326</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0326</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-KS43633 — Security fixes in airflow-3 3.0.6-r1</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-ks43633</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: airflow-3&lt;/p&gt;
&lt;p&gt;Package airflow-3 version 3.0.6-r1 fixes 29 vulnerabilities: CVE-2026-25604, CVE-2026-42526, CVE-2026-27173, CVE-2026-41018, CVE-2026-46745...&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: airflow-3&lt;/p&gt;
&lt;p&gt;Package airflow-3 version 3.0.6-r1 fixes 29 vulnerabilities: CVE-2026-25604, CVE-2026-42526, CVE-2026-27173, CVE-2026-41018, CVE-2026-46745...&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-ks43633</guid>
    </item>
    <item>
      <title>EUVD-2026-369275</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-369275</link>
      <description>EUVD-2026-369275</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-369275</guid>
    </item>
    <item>
      <title>fkie_cve-2026-24049</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-24049</link>
      <description>&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-24049</guid>
    </item>
    <item>
      <title>GHSA-8rrh-rw8j-w5fx — Wheel Affected by Arbitrary File Permission Modification via Path Traversal in wheel unpack</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8rrh-rw8j-w5fx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: wheel&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: wheel&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8rrh-rw8j-w5fx</guid>
    </item>
    <item>
      <title>OESA-2026-1279 — python-wheel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-1279</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: python-wheel&lt;/p&gt;
&lt;p&gt;A built-package format for Python. A wheel is a ZIP-format archive with a specially formatted filename and the .whl extension. It is designed to contain all the files for a PEP 376 compatible install in a way that is very close to the on-disk format.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.(CVE-2026-24049)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: python-wheel&lt;/p&gt;
&lt;p&gt;A built-package format for Python. A wheel is a ZIP-format archive with a specially formatted filename and the .whl extension. It is designed to contain all the files for a PEP 376 compatible install in a way that is very close to the on-disk format.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.(CVE-2026-24049)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-1279</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10151-1 — python311-wheel-0.46.3-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10151-1</link>
      <description>&lt;p&gt;python311-wheel-0.46.3-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;python311-wheel-0.46.3-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10151-1</guid>
    </item>
    <item>
      <title>PYSEC-2026-2047 — Wheel Affected by Arbitrary File Permission Modification via Path Traversal in wheel unpack</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2026-2047</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: wheel&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: wheel&lt;/p&gt;
&lt;p&gt;### Summary
 - **Vulnerability Type:** Path Traversal (CWE-22) leading to Arbitrary File Permission Modification.  
 - **Root Cause Component:** wheel.cli.unpack.unpack function.  
 - **Affected Packages:**  
   1. wheel (Upstream source)  
   2. setuptools (Downstream, vendors wheel)  
 - **Severity:** High (Allows modifying system file permissions).&lt;/p&gt;
&lt;p&gt;### Details  
The vulnerability exists in how the unpack function handles file permissions after extraction. The code blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path.  
```
# Vulnerable Code Snippet (present in both wheel and setuptools/_vendor/wheel)
for zinfo in wf.filelist:
    wf.extract(zinfo, destination)  # (1) Extraction is handled safely by zipfile&lt;/p&gt;
&lt;p&gt;# (2) VULNERABILITY:
    # The &amp;#39;permissions&amp;#39; are applied to a path constructed using the UNSANITIZED &amp;#39;zinfo.filename&amp;#39;.
    # If zinfo.filename contains &amp;#34;../&amp;#34;, this targets files outside the destination.
    permissions = zinfo.external_attr &amp;gt;&amp;gt; 16 &amp;amp; 0o777
    destination.joinpath(zinfo.filename).chmod(permissions)
```&lt;/p&gt;
&lt;p&gt;### PoC  
I have confirmed this exploit works against the unpack function imported from setuptools._vendor.wheel.cli.unpack.&lt;/p&gt;
&lt;p&gt;**Prerequisites:** pip install setuptools&lt;/p&gt;
&lt;p&gt;**Step 1: Generate the Malicious Wheel (gen_poc.py)**  
This script creates a wheel that passes internal hash validation but contains a directory traversal payload in the file list.…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2026-2047</guid>
    </item>
    <item>
      <title>RHSA-2026:10184 — Red Hat Security Advisory: RHOAI 2.25.5 - Red Hat OpenShift AI</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:10184</link>
      <description>&lt;p&gt;vllm: Server Side request forgery (SSRF) in MediaConnector feast: Feast: Remote Code Execution via insecure YAML deserialization openshift-ai: Trusty AI Grants All Authenticated users to list pods in any namespace nltk: Zip Slip Vulnerability in nltk Leading to Code Execution golang: net/url: Memory exhaustion in query parameter parsing in net/url golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion urllib3: urllib3 Streaming API improperly handles highly compressed data cbor2: cbor2: Information Disclosure via shared memory in CBORDecoder reuse aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb aiohttp: aiohttp: Denial of Service via specially crafted POST request aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request python-markdown: denial of service via malformed HTML-like sequences nltk: NLTK: Arbitrary file read via improper path validation in `filestring()` function nltk: NLTK: Arbitrary file read via path traversal vulnerability io.vertx/vertx-core: static handler component cache can be manipulated to deny the access to static files google-cloud-aiplatform: google-cloud-aiplatform: Arbitrary code execution via Stored Cross-Site Scripting (XSS) tensorflow: TensorFlow: Local privilege escalation via…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;vllm: Server Side request forgery (SSRF) in MediaConnector feast: Feast: Remote Code Execution via insecure YAML deserialization openshift-ai: Trusty AI Grants All Authenticated users to list pods in any namespace nltk: Zip Slip Vulnerability in nltk Leading to Code Execution golang: net/url: Memory exhaustion in query parameter parsing in net/url golang: archive/zip: Excessive CPU consumption when building archive index in archive/zip crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate urllib3: urllib3: Unbounded decompression chain leads to resource exhaustion urllib3: urllib3 Streaming API improperly handles highly compressed data cbor2: cbor2: Information Disclosure via shared memory in CBORDecoder reuse aiohttp: AIOHTTP&amp;#39;s HTTP Parser auto_decompress feature is vulnerable to zip bomb aiohttp: aiohttp: Denial of Service via specially crafted POST request aiohttp: aiohttp: Denial of Service via memory exhaustion from crafted POST request python-markdown: denial of service via malformed HTML-like sequences nltk: NLTK: Arbitrary file read via improper path validation in `filestring()` function nltk: NLTK: Arbitrary file read via path traversal vulnerability io.vertx/vertx-core: static handler component cache can be manipulated to deny the access to static files google-cloud-aiplatform: google-cloud-aiplatform: Arbitrary code execution via Stored Cross-Site Scripting (XSS) tensorflow: TensorFlow: Local privilege escalation via…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:10184</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:20217-1 — Security update for python-wheel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:20217-1</link>
      <description>&lt;p&gt;Security update for python-wheel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for python-wheel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:20217-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-24049</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-24049</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: python-pip, Ubuntu:Pro:16.04:LTS: python-pip, Ubuntu:Pro:18.04:LTS: python-pip, Ubuntu:Pro:20.04:LTS: python-pip, Ubuntu:Pro:24.04:LTS: wheel, Ubuntu:25.10: python-pip, Ubuntu:25.10: wheel&lt;/p&gt;
&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: python-pip, Ubuntu:Pro:16.04:LTS: python-pip, Ubuntu:Pro:18.04:LTS: python-pip, Ubuntu:Pro:20.04:LTS: python-pip, Ubuntu:Pro:24.04:LTS: wheel, Ubuntu:25.10: python-pip, Ubuntu:25.10: wheel&lt;/p&gt;
&lt;p&gt;wheel is a command line tool for manipulating Python wheel files, as defined in PEP 427. In versions 0.40.0 through 0.46.1, the unpack function is vulnerable to file permission modification through mishandling of file permissions after extraction. The logic blindly trusts the filename from the archive header for the chmod operation, even though the extraction process itself might have sanitized the path. Attackers can craft a malicious wheel file that, when unpacked, changes the permissions of critical system files (e.g., /etc/passwd, SSH keys, config files), allowing for Privilege Escalation or arbitrary code execution by modifying now-writable scripts. This issue has been fixed in version 0.46.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-24049</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0302 — Red Hat Enterprise Linux (python-wheel): Schwachstelle ermöglicht Privilegieneskalation und Codeausführung</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0302</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um seine Privilegien zu erhöhen oder beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um seine Privilegien zu erhöhen oder beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0302</guid>
    </item>
  </channel>
</rss>
