<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:13:16 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-15024</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-15024</link>
      <description>bdu:2026-15024</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-15024</guid>
    </item>
    <item>
      <title>EUVD-2026-370517</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-370517</link>
      <description>EUVD-2026-370517</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-370517</guid>
    </item>
    <item>
      <title>fkie_cve-2026-92960</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-92960</link>
      <description>&lt;p&gt;vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: [&amp;#39;*&amp;#39;] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: [&amp;#39;*&amp;#39;] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-92960</guid>
    </item>
    <item>
      <title>GHSA-qj2x-7x9q-qgm7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qj2x-7x9q-qgm7</link>
      <description>&lt;p&gt;vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: [&amp;#39;*&amp;#39;] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;vm2 before 3.11.6 fails to restrict access to os and dns builtins under the builtin: [&amp;#39;*&amp;#39;] configuration, allowing sandbox code to read host process identity and network topology. Attackers can invoke dns.setServers() to hijack the host process DNS resolver globally, redirecting all subsequent host DNS queries through an attacker-controlled resolver.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qj2x-7x9q-qgm7</guid>
    </item>
  </channel>
</rss>
