<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 06:17:40 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0933 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0933</link>
      <description>certfr-2026-avi-0933</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0933</guid>
    </item>
    <item>
      <title>EUVD-2026-324481</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-324481</link>
      <description>EUVD-2026-324481</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-324481</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33245</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33245</link>
      <description>&lt;p&gt;React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router&amp;#39;s unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if redirects come from untrusted sources. This does not impact applications that are not using the unstable RSC APIs in React Router. This is patched in version 7.13.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;React Router is a router for React. In versions 7.7.0 through 7.13.1, when using React Router&amp;#39;s unstable React Server Components (RSC) APIs, there is a potential client-side Cross-Site Scripting (XSS) vulnerability in the RSC redirect handling if redirects come from untrusted sources. This does not impact applications that are not using the unstable RSC APIs in React Router. This is patched in version 7.13.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33245</guid>
    </item>
    <item>
      <title>GHSA-8646-j5j9-6r62 — React Router vulnerable to XSS in unstable RSC redirect handling via javascript: redirect targets</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8646-j5j9-6r62</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: react-router&lt;/p&gt;
&lt;p&gt;When using React Router v7&amp;#39;s unstable RSC APIs, there exists a potential client-side XSS issue in the RSC redirect handling if redirects are coming from untrusted sources&lt;/p&gt;
&lt;p&gt;&amp;gt; [!NOTE]
&amp;gt; This only impacts your application if you are using the unstable RSC APIs in React Router.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: react-router&lt;/p&gt;
&lt;p&gt;When using React Router v7&amp;#39;s unstable RSC APIs, there exists a potential client-side XSS issue in the RSC redirect handling if redirects are coming from untrusted sources&lt;/p&gt;
&lt;p&gt;&amp;gt; [!NOTE]
&amp;gt; This only impacts your application if you are using the unstable RSC APIs in React Router.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8646-j5j9-6r62</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11680-1 — agama-web-ui-24+0.a836cced5-52.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11680-1</link>
      <description>&lt;p&gt;agama-web-ui-24+0.a836cced5-52.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;agama-web-ui-24+0.a836cced5-52.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11680-1</guid>
    </item>
    <item>
      <title>RHSA-2026:34456 — Red Hat Security Advisory: RHOAI 3.4.2 - Red Hat OpenShift AI</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:34456</link>
      <description>&lt;p&gt;mlflow: mlflow: Arbitrary file read via bypassed source path validation python-transformers: python-transformers: Arbitrary code execution due to overridden trust_remote_code setting python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite react-router: React Router: Cross-Site Scripting vulnerability via untrusted React Server Component redirects aiohttp: AIOHTTP: Arbitrary code execution via untrusted input to CookieJar.load() starlette: Starlette: Security restriction bypass via malformed HTTP Host header&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;mlflow: mlflow: Arbitrary file read via bypassed source path validation python-transformers: python-transformers: Arbitrary code execution due to overridden trust_remote_code setting python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite react-router: React Router: Cross-Site Scripting vulnerability via untrusted React Server Component redirects aiohttp: AIOHTTP: Arbitrary code execution via untrusted input to CookieJar.load() starlette: Starlette: Security restriction bypass via malformed HTTP Host header&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:34456</guid>
    </item>
  </channel>
</rss>
