<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 10:05:23 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-337688</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-337688</link>
      <description>EUVD-2026-337688</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-337688</guid>
    </item>
    <item>
      <title>fkie_cve-2021-47932</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-47932</link>
      <description>&lt;p&gt;WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to create administrator accounts by submitting crafted requests to the AJAX handler. Attackers can send POST requests to the tcp_register_and_login_ajax action with tcp_role set to administrator to gain full administrative access without authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to create administrator accounts by submitting crafted requests to the AJAX handler. Attackers can send POST requests to the tcp_register_and_login_ajax action with tcp_role set to administrator to gain full administrative access without authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-47932</guid>
    </item>
    <item>
      <title>GHSA-r2pw-m85m-3mfq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r2pw-m85m-3mfq</link>
      <description>&lt;p&gt;WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to create administrator accounts by submitting crafted requests to the AJAX handler. Attackers can send POST requests to the tcp_register_and_login_ajax action with tcp_role set to administrator to gain full administrative access without authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to create administrator accounts by submitting crafted requests to the AJAX handler. Attackers can send POST requests to the tcp_register_and_login_ajax action with tcp_role set to administrator to gain full administrative access without authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r2pw-m85m-3mfq</guid>
    </item>
  </channel>
</rss>
