<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 04:04:32 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-338360</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-338360</link>
      <description>EUVD-2026-338360</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-338360</guid>
    </item>
    <item>
      <title>fkie_cve-2026-47089</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-47089</link>
      <description>&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-47089</guid>
    </item>
    <item>
      <title>GHSA-fx86-vr4x-grgq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fx86-vr4x-grgq</link>
      <description>&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fx86-vr4x-grgq</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:21368-1 — Security update for cyrus-imapd</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21368-1</link>
      <description>&lt;p&gt;Security update for cyrus-imapd&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for cyrus-imapd&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:21368-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-47089</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-47089</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: cyrus-imapd, Ubuntu:Pro:20.04:LTS: cyrus-imapd, Ubuntu:Pro:22.04:LTS: cyrus-imapd, Ubuntu:Pro:24.04:LTS: cyrus-imapd, Ubuntu:26.04:LTS: cyrus-imapd&lt;/p&gt;
&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: cyrus-imapd, Ubuntu:Pro:20.04:LTS: cyrus-imapd, Ubuntu:Pro:22.04:LTS: cyrus-imapd, Ubuntu:Pro:24.04:LTS: cyrus-imapd, Ubuntu:26.04:LTS: cyrus-imapd&lt;/p&gt;
&lt;p&gt;An issue was discovered in cyrus-imapd in Cyrus IMAP through 3.12.2. LISTRIGHTS os not limited to users with admin access. An authenticated user could call IMAP LISTRIGHTS against any mailbox they could name and learn what principals had what access to it. (This action should have been restricted to users with admin access on the target mailbox.)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-47089</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2387 — cyrus imap: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2387</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in cyrus imap ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Daten offenzulegen oder zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in cyrus imap ausnutzen, um Sicherheitsvorkehrungen zu umgehen und Daten offenzulegen oder zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2387</guid>
    </item>
  </channel>
</rss>
