<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 03:52:32 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-214568</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214568</link>
      <description>EUVD-2026-214568</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214568</guid>
    </item>
    <item>
      <title>fkie_cve-2023-28851</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-28851</link>
      <description>&lt;p&gt;Silverstripe Form Capture provides a method to capture simple silverstripe forms and an admin interface for users. Starting in version 0.2.0 and prior to versions 1.0.2, 1.1.0, 2.2.5, and 3.1.1, improper escaping when presenting stored form submissions allowed for an attacker to perform a Cross-Site Scripting attack. The vulnerability was initially patched in version 1.0.2, and version 1.1.0 includes this patch. The bug was then accidentally re-introduced during a merge error, and has been re-patched in versions 2.2.5 and 3.1.1. There are no known workarounds for this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Silverstripe Form Capture provides a method to capture simple silverstripe forms and an admin interface for users. Starting in version 0.2.0 and prior to versions 1.0.2, 1.1.0, 2.2.5, and 3.1.1, improper escaping when presenting stored form submissions allowed for an attacker to perform a Cross-Site Scripting attack. The vulnerability was initially patched in version 1.0.2, and version 1.1.0 includes this patch. The bug was then accidentally re-introduced during a merge error, and has been re-patched in versions 2.2.5 and 3.1.1. There are no known workarounds for this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-28851</guid>
    </item>
    <item>
      <title>GHSA-38h6-gmr2-j4wx — Silverstripe Form Capture vulnerable to stored cross-site-scripting</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-38h6-gmr2-j4wx</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: bigfork/silverstripe-form-capture, Packagist: andrewhaine/silverstripe-form-capture&lt;/p&gt;
&lt;p&gt;### Impact
Improper escaping when presenting stored form submissions allowed for an attacker to perform a Cross-Site Scripting attack&lt;/p&gt;
&lt;p&gt;### Patches
The vulnerability was initially patched in version 1.0.2, and version 1.1.0 includes this patch. The bug was then accidentally re-introduced during a merge error, and has been re-patched in versions 2.2.5 and 3.1.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: bigfork/silverstripe-form-capture, Packagist: andrewhaine/silverstripe-form-capture&lt;/p&gt;
&lt;p&gt;### Impact
Improper escaping when presenting stored form submissions allowed for an attacker to perform a Cross-Site Scripting attack&lt;/p&gt;
&lt;p&gt;### Patches
The vulnerability was initially patched in version 1.0.2, and version 1.1.0 includes this patch. The bug was then accidentally re-introduced during a merge error, and has been re-patched in versions 2.2.5 and 3.1.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-38h6-gmr2-j4wx</guid>
    </item>
    <item>
      <title>gsd-2023-28851</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-28851</link>
      <description>gsd-2023-28851</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-28851</guid>
    </item>
  </channel>
</rss>
