<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 08:36:08 +0000</lastBuildDate>
    <item>
      <title>BREW-ansible-CVE-2016-8628</title>
      <link>https://cve.radiocsirt.org/vuln/brew-ansible-cve-2016-8628</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-ansible-cve-2016-8628</guid>
    </item>
    <item>
      <title>cnvd-2016-10735</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-10735</link>
      <description>cnvd-2016-10735</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-10735</guid>
    </item>
    <item>
      <title>EUVD-2026-87268</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-87268</link>
      <description>EUVD-2026-87268</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-87268</guid>
    </item>
    <item>
      <title>fkie_cve-2016-8628</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-8628</link>
      <description>&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-8628</guid>
    </item>
    <item>
      <title>GHSA-jg4f-jqm5-4mgq — Ansible fails to properly sanitize fact variables sent from the Ansible controller</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jg4f-jqm5-4mgq</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jg4f-jqm5-4mgq</guid>
    </item>
    <item>
      <title>gsd-2016-8628</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-8628</link>
      <description>gsd-2016-8628</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-8628</guid>
    </item>
    <item>
      <title>openSUSE-SU-2017:2976-1 — Security update for ansible</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2017:2976-1</link>
      <description>&lt;p&gt;Security update for ansible&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ansible&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2017:2976-1</guid>
    </item>
    <item>
      <title>PYSEC-2018-38</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2018-38</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2018-38</guid>
    </item>
    <item>
      <title>RHSA-2016:2778 — Red Hat Security Advisory: atomic-openshift-utils security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2016:2778</link>
      <description>&lt;p&gt;ansible: Command injection by compromised server via fact variables&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ansible: Command injection by compromised server via fact variables&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2016:2778</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:1509-1 — Security update for SUSE Manager Client Tools</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:1509-1</link>
      <description>&lt;p&gt;Security update for SUSE Manager Client Tools&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for SUSE Manager Client Tools&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:1509-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2016-8628</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-8628</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: ansible&lt;/p&gt;
&lt;p&gt;Ansible before version 2.2.0 fails to properly sanitize fact variables sent from the Ansible controller. An attacker with the ability to create special variables on the controller could execute arbitrary commands on Ansible clients as the user Ansible runs as.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-8628</guid>
    </item>
  </channel>
</rss>
