<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 10:22:02 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-07548</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07548</link>
      <description>bdu:2026-07548</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07548</guid>
    </item>
    <item>
      <title>EUVD-2026-320028</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-320028</link>
      <description>EUVD-2026-320028</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-320028</guid>
    </item>
    <item>
      <title>fkie_cve-2026-3473</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-3473</link>
      <description>&lt;p&gt;Mattermost versions 11.6.x &amp;lt;= 11.6.0, 11.5.x &amp;lt;= 11.5.3, 11.4.x &amp;lt;= 11.4.4, 10.11.x &amp;lt;= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and download files belonging to other users or teams via crafted Boards API requests using valid file IDs.. Mattermost Advisory ID: MMSA-2026-00620&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mattermost versions 11.6.x &amp;lt;= 11.6.0, 11.5.x &amp;lt;= 11.5.3, 11.4.x &amp;lt;= 11.4.4, 10.11.x &amp;lt;= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and download files belonging to other users or teams via crafted Boards API requests using valid file IDs.. Mattermost Advisory ID: MMSA-2026-00620&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-3473</guid>
    </item>
    <item>
      <title>GHSA-7pf2-9c95-w332 — Mattermost doesn't validate file ownership and access control</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7pf2-9c95-w332</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/mattermost/mattermost-server&lt;/p&gt;
&lt;p&gt;Mattermost versions 11.6.x &amp;lt;= 11.6.0, 11.5.x &amp;lt;= 11.5.3, 11.4.x &amp;lt;= 11.4.4, 10.11.x &amp;lt;= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and download files belonging to other users or teams via crafted Boards API requests using valid file IDs. Mattermost Advisory ID: MMSA-2026-00620.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/mattermost/mattermost-server&lt;/p&gt;
&lt;p&gt;Mattermost versions 11.6.x &amp;lt;= 11.6.0, 11.5.x &amp;lt;= 11.5.3, 11.4.x &amp;lt;= 11.4.4, 10.11.x &amp;lt;= 10.11.14 fail to validate file ownership and access control, which allows an authenticated user to access and download files belonging to other users or teams via crafted Boards API requests using valid file IDs. Mattermost Advisory ID: MMSA-2026-00620.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7pf2-9c95-w332</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1243 — Mattermost: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1243</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Mattermost ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1243</guid>
    </item>
  </channel>
</rss>
