<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:00:24 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-352280</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-352280</link>
      <description>EUVD-2026-352280</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-352280</guid>
    </item>
    <item>
      <title>fkie_cve-2026-73648</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-73648</link>
      <description>&lt;p&gt;rails-html-sanitizer is responsible for sanitizing HTML fragments in Rails applications. From 1.0.3 until 1.7.1, Rails::HTML::PermitScrubber restricted SVG reference elements in SVG_ALLOW_LOCAL_HREF only when they used xlink:href, even though browsers also accept the plain href attribute. Applications with non-default allowed tags that included SVG use or feImage elements could therefore permit external references; a same-origin external SVG referenced by use could execute scripts in the sanitized document&amp;#39;s context, while feImage could load external images for tracking. Applications using the default allowed tags are not affected. This issue is fixed in version 1.7.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;rails-html-sanitizer is responsible for sanitizing HTML fragments in Rails applications. From 1.0.3 until 1.7.1, Rails::HTML::PermitScrubber restricted SVG reference elements in SVG_ALLOW_LOCAL_HREF only when they used xlink:href, even though browsers also accept the plain href attribute. Applications with non-default allowed tags that included SVG use or feImage elements could therefore permit external references; a same-origin external SVG referenced by use could execute scripts in the sanitized document&amp;#39;s context, while feImage could load external images for tracking. Applications using the default allowed tags are not affected. This issue is fixed in version 1.7.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-73648</guid>
    </item>
    <item>
      <title>GHSA-cj75-f6xr-r4g7 — Rails HTML Sanitizers: Possible XSS vulnerability with certain configurations</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cj75-f6xr-r4g7</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: rails-html-sanitizer&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;There is a possible cross-site scripting vulnerability in rails-html-sanitizer when the sanitizer is configured to allow an SVG reference element such as `&amp;lt;use&amp;gt;`. See related [GHSA-9wjq-cp2p-hrgf](https://github.com/flavorjones/loofah/security/advisories/GHSA-9wjq-cp2p-hrgf) in Loofah, whose SVG local-reference logic rails-html-sanitizer mirrors.&lt;/p&gt;
&lt;p&gt;- Versions affected: `&amp;gt;= 1.0.3, &amp;lt; 1.7.1`
- Not affected: `&amp;lt; 1.0.3`
- Fixed versions: `1.7.1`&lt;/p&gt;
&lt;p&gt;## Impact&lt;/p&gt;
&lt;p&gt;`Rails::HTML::PermitScrubber` restricts SVG reference elements in the `SVG_ALLOW_LOCAL_HREF` collection to local, same-document references, but that restriction covered only the `xlink:href` attribute. Browsers also accept a plain `href` attribute per the SVG 2 spec, and it was not restricted, so those elements could reference arbitrary external documents. SVG `&amp;lt;use&amp;gt;` can load and render external SVG content by reference, and if the referenced document is same-origin and contains scripts, it could execute in the context of the sanitized document. `&amp;lt;feImage&amp;gt;` can load external images, which can be used for tracking.&lt;/p&gt;
&lt;p&gt;Applications are impacted only when the allowed tags are overridden to include one of these SVG reference elements, for example `&amp;lt;use&amp;gt;` or `&amp;lt;feImage&amp;gt;`. The default allowed tags do not include these SVG elements, so applications using the default configuration are not affected.&lt;/p&gt;
&lt;p&gt;## Workarounds&lt;/p&gt;
&lt;p&gt;Remove the SVG reference elements (such as `use` and `feImage`) from the overridden allowed tags. Applications us…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; RubyGems: rails-html-sanitizer&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;There is a possible cross-site scripting vulnerability in rails-html-sanitizer when the sanitizer is configured to allow an SVG reference element such as `&amp;lt;use&amp;gt;`. See related [GHSA-9wjq-cp2p-hrgf](https://github.com/flavorjones/loofah/security/advisories/GHSA-9wjq-cp2p-hrgf) in Loofah, whose SVG local-reference logic rails-html-sanitizer mirrors.&lt;/p&gt;
&lt;p&gt;- Versions affected: `&amp;gt;= 1.0.3, &amp;lt; 1.7.1`
- Not affected: `&amp;lt; 1.0.3`
- Fixed versions: `1.7.1`&lt;/p&gt;
&lt;p&gt;## Impact&lt;/p&gt;
&lt;p&gt;`Rails::HTML::PermitScrubber` restricts SVG reference elements in the `SVG_ALLOW_LOCAL_HREF` collection to local, same-document references, but that restriction covered only the `xlink:href` attribute. Browsers also accept a plain `href` attribute per the SVG 2 spec, and it was not restricted, so those elements could reference arbitrary external documents. SVG `&amp;lt;use&amp;gt;` can load and render external SVG content by reference, and if the referenced document is same-origin and contains scripts, it could execute in the context of the sanitized document. `&amp;lt;feImage&amp;gt;` can load external images, which can be used for tracking.&lt;/p&gt;
&lt;p&gt;Applications are impacted only when the allowed tags are overridden to include one of these SVG reference elements, for example `&amp;lt;use&amp;gt;` or `&amp;lt;feImage&amp;gt;`. The default allowed tags do not include these SVG elements, so applications using the default configuration are not affected.&lt;/p&gt;
&lt;p&gt;## Workarounds&lt;/p&gt;
&lt;p&gt;Remove the SVG reference elements (such as `use` and `feImage`) from the overridden allowed tags. Applications us…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cj75-f6xr-r4g7</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-73648</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-73648</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: ruby-rails-html-sanitizer, Ubuntu:18.04:LTS: ruby-rails-html-sanitizer, Ubuntu:20.04:LTS: ruby-rails-html-sanitizer, Ubuntu:22.04:LTS: ruby-rails-html-sanitizer, Ubuntu:24.04:LTS: ruby-rails-html-sanitizer, Ubuntu:26.04:LTS: ruby-rails-html-sanitizer&lt;/p&gt;
&lt;p&gt;rails-html-sanitizer is responsible for sanitizing HTML fragments in Rails applications. From 1.0.3 until 1.7.1, Rails::HTML::PermitScrubber restricted SVG reference elements in SVG_ALLOW_LOCAL_HREF only when they used xlink:href, even though browsers also accept the plain href attribute. Applications with non-default allowed tags that included SVG use or feImage elements could therefore permit external references; a same-origin external SVG referenced by use could execute scripts in the sanitized document&amp;#39;s context, while feImage could load external images for tracking. Applications using the default allowed tags are not affected. This issue is fixed in version 1.7.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: ruby-rails-html-sanitizer, Ubuntu:18.04:LTS: ruby-rails-html-sanitizer, Ubuntu:20.04:LTS: ruby-rails-html-sanitizer, Ubuntu:22.04:LTS: ruby-rails-html-sanitizer, Ubuntu:24.04:LTS: ruby-rails-html-sanitizer, Ubuntu:26.04:LTS: ruby-rails-html-sanitizer&lt;/p&gt;
&lt;p&gt;rails-html-sanitizer is responsible for sanitizing HTML fragments in Rails applications. From 1.0.3 until 1.7.1, Rails::HTML::PermitScrubber restricted SVG reference elements in SVG_ALLOW_LOCAL_HREF only when they used xlink:href, even though browsers also accept the plain href attribute. Applications with non-default allowed tags that included SVG use or feImage elements could therefore permit external references; a same-origin external SVG referenced by use could execute scripts in the sanitized document&amp;#39;s context, while feImage could load external images for tracking. Applications using the default allowed tags are not affected. This issue is fixed in version 1.7.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-73648</guid>
    </item>
  </channel>
</rss>
