<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 17:13:21 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-367191</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-367191</link>
      <description>EUVD-2026-367191</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-367191</guid>
    </item>
    <item>
      <title>fkie_cve-2026-85025</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-85025</link>
      <description>&lt;p&gt;IBM Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute arbitrary code and access or modify chat sessions through publicly shared MCP project endpoints due to improper enforcement of public-flow security restrictions and session isolation controls.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IBM Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute arbitrary code and access or modify chat sessions through publicly shared MCP project endpoints due to improper enforcement of public-flow security restrictions and session isolation controls.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-85025</guid>
    </item>
    <item>
      <title>GHSA-j9vg-5378-pr5p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j9vg-5378-pr5p</link>
      <description>&lt;p&gt;IBM Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute arbitrary code and access or modify chat sessions through publicly shared MCP project endpoints due to improper enforcement of public-flow security restrictions and session isolation controls.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IBM Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute arbitrary code and access or modify chat sessions through publicly shared MCP project endpoints due to improper enforcement of public-flow security restrictions and session isolation controls.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j9vg-5378-pr5p</guid>
    </item>
    <item>
      <title>NCSC-2026-0392 — Kwetsbaarheden verholpen in IBM Langflow OSS en IBM MQ Appliance</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0392</link>
      <description>NCSC-2026-0392</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0392</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-3239 — Langflow OSS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3239</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Langflow OSS ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, erweiterte Berechtigungen zu erlangen oder sensible Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Langflow OSS ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, erweiterte Berechtigungen zu erlangen oder sensible Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3239</guid>
    </item>
  </channel>
</rss>
