<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 13:42:31 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-275024</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-275024</link>
      <description>EUVD-2026-275024</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-275024</guid>
    </item>
    <item>
      <title>fkie_cve-2018-25178</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-25178</link>
      <description>&lt;p&gt;Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the file parameter. Attackers can send POST requests to showtif.php with arbitrary file paths in the file parameter to retrieve system files like configuration and initialization files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the file parameter. Attackers can send POST requests to showtif.php with arbitrary file paths in the file parameter to retrieve system files like configuration and initialization files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-25178</guid>
    </item>
    <item>
      <title>GHSA-r54p-xv62-5qww</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r54p-xv62-5qww</link>
      <description>&lt;p&gt;Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the file parameter. Attackers can send POST requests to showtif.php with arbitrary file paths in the file parameter to retrieve system files like configuration and initialization files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Easyndexer 1.0 contains an arbitrary file download vulnerability that allows unauthenticated attackers to download sensitive files by manipulating the file parameter. Attackers can send POST requests to showtif.php with arbitrary file paths in the file parameter to retrieve system files like configuration and initialization files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r54p-xv62-5qww</guid>
    </item>
  </channel>
</rss>
