<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 04:12:53 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-211213</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-211213</link>
      <description>EUVD-2026-211213</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-211213</guid>
    </item>
    <item>
      <title>fkie_cve-2024-53683</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-53683</link>
      <description>&lt;p&gt;A valid set of credentials in a .js file and a static token for 
communication were obtained from the decompiled IPA. An attacker could 
use the information to disrupt normal use of the application by changing
 the translation files and thus weaken the integrity of normal use.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A valid set of credentials in a .js file and a static token for 
communication were obtained from the decompiled IPA. An attacker could 
use the information to disrupt normal use of the application by changing
 the translation files and thus weaken the integrity of normal use.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-53683</guid>
    </item>
    <item>
      <title>GHSA-vq45-v67f-g42p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vq45-v67f-g42p</link>
      <description>&lt;p&gt;A valid set of credentials in a .js file and a static token for 
communication were obtained from the decompiled IPA. An attacker could 
use the information to disrupt normal use of the application by changing
 the translation files and thus weaken the integrity of normal use.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A valid set of credentials in a .js file and a static token for 
communication were obtained from the decompiled IPA. An attacker could 
use the information to disrupt normal use of the application by changing
 the translation files and thus weaken the integrity of normal use.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vq45-v67f-g42p</guid>
    </item>
    <item>
      <title>ICSMA-24-354-01 — Ossur Mobile Logic Application</title>
      <link>https://cve.radiocsirt.org/vuln/icsma-24-354-01</link>
      <description>&lt;p&gt;A valid set of credentials in a .js file and a static token for communication were obtained from the decompiled IPA. An attacker could use the information to disrupt normal use of the application by changing the translation files and thus weaken the integrity of normal use. Multiple bash files were present in the application&amp;#39;s private directory. Bash files can be used on their own, by an attacker that has already full access to the mobile platform to compromise the translations for the application. Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. An attacker could access unauthorized information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A valid set of credentials in a .js file and a static token for communication were obtained from the decompiled IPA. An attacker could use the information to disrupt normal use of the application by changing the translation files and thus weaken the integrity of normal use. Multiple bash files were present in the application&amp;#39;s private directory. Bash files can be used on their own, by an attacker that has already full access to the mobile platform to compromise the translations for the application. Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. An attacker could access unauthorized information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsma-24-354-01</guid>
    </item>
  </channel>
</rss>
