<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 21:18:08 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0141 — De multiples vulnérabilités ont été découvertes dans les produits SAP. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0141</link>
      <description>certfr-2026-avi-0141</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0141</guid>
    </item>
    <item>
      <title>EUVD-2026-267813</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-267813</link>
      <description>EUVD-2026-267813</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-267813</guid>
    </item>
    <item>
      <title>fkie_cve-2026-24325</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-24325</link>
      <description>&lt;p&gt;SAP BusinessObjects Enterprise does not sufficiently encode user-controlled inputs, leading to Stored Cross-Site Scripting (XSS) vulnerability. This enables an admin user to inject malicious JavaScript into a website and the injected script gets executed when the user visits the compromised page.This vulnerability has low impact on confidentiality and integrity of the data. There is no impact on the availability of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP BusinessObjects Enterprise does not sufficiently encode user-controlled inputs, leading to Stored Cross-Site Scripting (XSS) vulnerability. This enables an admin user to inject malicious JavaScript into a website and the injected script gets executed when the user visits the compromised page.This vulnerability has low impact on confidentiality and integrity of the data. There is no impact on the availability of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-24325</guid>
    </item>
    <item>
      <title>GHSA-f378-hr82-h75p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f378-hr82-h75p</link>
      <description>&lt;p&gt;SAP BusinessObjects Enterprise does not sufficiently encode user-controlled inputs, leading to Stored Cross-Site Scripting (XSS) vulnerability. This enables an admin user to inject malicious JavaScript into a website and the injected script gets executed when the user visits the compromised page.This vulnerability has low impact on confidentiality and integrity of the data. There is no impact on the availability of the application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SAP BusinessObjects Enterprise does not sufficiently encode user-controlled inputs, leading to Stored Cross-Site Scripting (XSS) vulnerability. This enables an admin user to inject malicious JavaScript into a website and the injected script gets executed when the user visits the compromised page.This vulnerability has low impact on confidentiality and integrity of the data. There is no impact on the availability of the application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f378-hr82-h75p</guid>
    </item>
    <item>
      <title>NCSC-2026-0052 — Kwetsbaarheden verholpen in SAP producten</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0052</link>
      <description>NCSC-2026-0052</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0052</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0354 — SAP Patchday Februar 2026: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0354</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder andere, nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in SAP Software ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Cross-Site-Scripting-Angriffe durchzuführen, Daten zu manipulieren, vertrauliche Informationen offenzulegen oder andere, nicht näher spezifizierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0354</guid>
    </item>
  </channel>
</rss>
