<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:53:50 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-340657</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-340657</link>
      <description>EUVD-2026-340657</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-340657</guid>
    </item>
    <item>
      <title>fkie_cve-2026-9765</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-9765</link>
      <description>&lt;p&gt;Note: The CVE and blog post don&amp;#39;t exist because we determined this is actually a cloud-only issue.&lt;/p&gt;
&lt;p&gt;Access Controls are “Broken” when a user can access resources they are not authorized to access. An attacker can bypass any access control mechanisms in a web application, and gain unauthorized access to resources that are not available with their permissions.&lt;/p&gt;
&lt;p&gt;Broken access control can allow attackers to:
Access resources only accessible to certain users, thus allowing unauthorized access to data
Perform operations on behalf of other users, leading to account takeovers in the worst cases
Attempt privilege escalation
Attempt to take over an account&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Note: The CVE and blog post don&amp;#39;t exist because we determined this is actually a cloud-only issue.&lt;/p&gt;
&lt;p&gt;Access Controls are “Broken” when a user can access resources they are not authorized to access. An attacker can bypass any access control mechanisms in a web application, and gain unauthorized access to resources that are not available with their permissions.&lt;/p&gt;
&lt;p&gt;Broken access control can allow attackers to:
Access resources only accessible to certain users, thus allowing unauthorized access to data
Perform operations on behalf of other users, leading to account takeovers in the worst cases
Attempt privilege escalation
Attempt to take over an account&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-9765</guid>
    </item>
    <item>
      <title>GHSA-4cgr-9q8v-9x3m</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4cgr-9q8v-9x3m</link>
      <description>&lt;p&gt;Note: The CVE and blog post don&amp;#39;t exist because we determined this is actually a cloud-only issue.&lt;/p&gt;
&lt;p&gt;Access Controls are “Broken” when a user can access resources they are not authorized to access. An attacker can bypass any access control mechanisms in a web application, and gain unauthorized access to resources that are not available with their permissions.&lt;/p&gt;
&lt;p&gt;Broken access control can allow attackers to:
Access resources only accessible to certain users, thus allowing unauthorized access to data
Perform operations on behalf of other users, leading to account takeovers in the worst cases
Attempt privilege escalation
Attempt to take over an account&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Note: The CVE and blog post don&amp;#39;t exist because we determined this is actually a cloud-only issue.&lt;/p&gt;
&lt;p&gt;Access Controls are “Broken” when a user can access resources they are not authorized to access. An attacker can bypass any access control mechanisms in a web application, and gain unauthorized access to resources that are not available with their permissions.&lt;/p&gt;
&lt;p&gt;Broken access control can allow attackers to:
Access resources only accessible to certain users, thus allowing unauthorized access to data
Perform operations on behalf of other users, leading to account takeovers in the worst cases
Attempt privilege escalation
Attempt to take over an account&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4cgr-9q8v-9x3m</guid>
    </item>
    <item>
      <title>RHSA-2026:63164 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:63164</link>
      <description>&lt;p&gt;grafana: Grafana: Stored Cross-Site Scripting via malicious dashboard field name grafana: Grafana: Denial of Service via unbounded memory growth in OAuth login route grafana: Grafana: Privilege escalation via broken access control grafana: Grafana: Denial of Service via uncontrolled memory usage in alertmanager templates grafana: Grafana: Denial of Service via excessive memory allocation from large API request payloads qs: qs: Denial of Service via improper validation in stringify function qs: qs: Denial of Service via array limit bypass in query string parsing js-yaml: js-yaml: Denial of Service vulnerability in YAML parsing&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;grafana: Grafana: Stored Cross-Site Scripting via malicious dashboard field name grafana: Grafana: Denial of Service via unbounded memory growth in OAuth login route grafana: Grafana: Privilege escalation via broken access control grafana: Grafana: Denial of Service via uncontrolled memory usage in alertmanager templates grafana: Grafana: Denial of Service via excessive memory allocation from large API request payloads qs: qs: Denial of Service via improper validation in stringify function qs: qs: Denial of Service via array limit bypass in query string parsing js-yaml: js-yaml: Denial of Service vulnerability in YAML parsing&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:63164</guid>
    </item>
  </channel>
</rss>
