<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 16:50:21 +0000</lastBuildDate>
    <item>
      <title>DRUPAL-CONTRIB-2026-034</title>
      <link>https://cve.radiocsirt.org/vuln/drupal-contrib-2026-034</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist:https://packages.drupal.org/8: drupal/node_view_permissions&lt;/p&gt;
&lt;p&gt;Node view permissions module enables permissions &amp;#34;View own content&amp;#34; and &amp;#34;View any content&amp;#34; for each content type on permissions page  
The module doesn&amp;#39;t sufficiently handle the case where a user is cancelled and their content is reassigned to the anonymous user.  
This vulnerability is mitigated by the fact that only private contents where anonymous should not have view access are affected, and only if a node was reassigned to the anonymous user.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist:https://packages.drupal.org/8: drupal/node_view_permissions&lt;/p&gt;
&lt;p&gt;Node view permissions module enables permissions &amp;#34;View own content&amp;#34; and &amp;#34;View any content&amp;#34; for each content type on permissions page  
The module doesn&amp;#39;t sufficiently handle the case where a user is cancelled and their content is reassigned to the anonymous user.  
This vulnerability is mitigated by the fact that only private contents where anonymous should not have view access are affected, and only if a node was reassigned to the anonymous user.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/drupal-contrib-2026-034</guid>
    </item>
    <item>
      <title>EUVD-2026-319736</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-319736</link>
      <description>EUVD-2026-319736</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-319736</guid>
    </item>
    <item>
      <title>fkie_cve-2026-8491</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-8491</link>
      <description>&lt;p&gt;Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions allows Forceful Browsing.&lt;/p&gt;
&lt;p&gt;This issue affects Node View Permissions: from 0.0.0 before 1.7.0, from 2.0.0 before 2.0.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions allows Forceful Browsing.&lt;/p&gt;
&lt;p&gt;This issue affects Node View Permissions: from 0.0.0 before 1.7.0, from 2.0.0 before 2.0.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-8491</guid>
    </item>
    <item>
      <title>GHSA-xrm3-543w-4g3q</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xrm3-543w-4g3q</link>
      <description>&lt;p&gt;Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions allows Forceful Browsing.&lt;/p&gt;
&lt;p&gt;This issue affects Node View Permissions: from 0.0.0 before 1.7.0, from 2.0.0 before 2.0.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal Node View Permissions allows Forceful Browsing.&lt;/p&gt;
&lt;p&gt;This issue affects Node View Permissions: from 0.0.0 before 1.7.0, from 2.0.0 before 2.0.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xrm3-543w-4g3q</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1533 — Drupal Extensions: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1533</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Drupal ausnutzen, um Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder Cross-Site-Scripting-Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Drupal ausnutzen, um Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder Cross-Site-Scripting-Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1533</guid>
    </item>
  </channel>
</rss>
