<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 18:00:02 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-243683</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-243683</link>
      <description>EUVD-2026-243683</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-243683</guid>
    </item>
    <item>
      <title>fkie_cve-2025-49139</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-49139</link>
      <description>&lt;p&gt;HAX CMS PHP allows users to manage their microsite universe with a PHP backend. Prior to version 11.0.0, in the HAX site editor, users can create a website block to load another site in an iframe. The application allows users to supply a target URL in the website block. When the HAX site is visited, the client&amp;#39;s browser will query the supplied URL. An authenticated attacker can create a HAX site with a website block pointing at an attacker-controlled server running Responder or a similar tool. The attacker can then conduct a phishing attack by convincing another user to visit their malicious HAX site to harvest credentials. Version 11.0.0 contains a patch for the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;HAX CMS PHP allows users to manage their microsite universe with a PHP backend. Prior to version 11.0.0, in the HAX site editor, users can create a website block to load another site in an iframe. The application allows users to supply a target URL in the website block. When the HAX site is visited, the client&amp;#39;s browser will query the supplied URL. An authenticated attacker can create a HAX site with a website block pointing at an attacker-controlled server running Responder or a similar tool. The attacker can then conduct a phishing attack by convincing another user to visit their malicious HAX site to harvest credentials. Version 11.0.0 contains a patch for the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-49139</guid>
    </item>
    <item>
      <title>GHSA-v3ph-2q5q-cg88 — @haxtheweb/haxcms-nodejs Iframe Phishing vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v3ph-2q5q-cg88</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @haxtheweb/haxcms-nodejs&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;In the HAX site editor, users can create a website block to load another site in an iframe. The application allows users to supply a target URL in the website block. When the HAX site is visited, the client&amp;#39;s browser will query the supplied URL.&lt;/p&gt;
&lt;p&gt;### Affected Resources&lt;/p&gt;
&lt;p&gt;- [Operations.php:868](https://github.com/haxtheweb/haxcms-php/blob/master/system/backend/php/lib/Operations.php#L868)
- `https://&amp;lt;site&amp;gt;/&amp;lt;user&amp;gt;/system/api/saveNode`&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;1. Set the URL in an iframe pointing to an attacker-controlled server running Responder&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/baac23ec-7b1e-49cf-864d-c3550b2c71bf)&lt;/p&gt;
&lt;p&gt;2. Once another user visits the site, they are prompted to sign in.&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/a3a0b75d-e12f-49cf-8669-9686353a92e2)&lt;/p&gt;
&lt;p&gt;3. If a user inputs credentials, the username and password hash are outputted in Responder.&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/428542d3-8cf5-4bfa-b759-e630c3ee6ac3)&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;An authenticated attacker can create a HAX site with a website block pointing at an attacker-controlled server running Responder or a similar tool. The attacker can then conduct a phishing attack by convincing another user to visit their malicious HAX site to harvest credentials.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: @haxtheweb/haxcms-nodejs&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;In the HAX site editor, users can create a website block to load another site in an iframe. The application allows users to supply a target URL in the website block. When the HAX site is visited, the client&amp;#39;s browser will query the supplied URL.&lt;/p&gt;
&lt;p&gt;### Affected Resources&lt;/p&gt;
&lt;p&gt;- [Operations.php:868](https://github.com/haxtheweb/haxcms-php/blob/master/system/backend/php/lib/Operations.php#L868)
- `https://&amp;lt;site&amp;gt;/&amp;lt;user&amp;gt;/system/api/saveNode`&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;1. Set the URL in an iframe pointing to an attacker-controlled server running Responder&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/baac23ec-7b1e-49cf-864d-c3550b2c71bf)&lt;/p&gt;
&lt;p&gt;2. Once another user visits the site, they are prompted to sign in.&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/a3a0b75d-e12f-49cf-8669-9686353a92e2)&lt;/p&gt;
&lt;p&gt;3. If a user inputs credentials, the username and password hash are outputted in Responder.&lt;/p&gt;
&lt;p&gt;![image](https://github.com/user-attachments/assets/428542d3-8cf5-4bfa-b759-e630c3ee6ac3)&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;An authenticated attacker can create a HAX site with a website block pointing at an attacker-controlled server running Responder or a similar tool. The attacker can then conduct a phishing attack by convincing another user to visit their malicious HAX site to harvest credentials.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v3ph-2q5q-cg88</guid>
    </item>
  </channel>
</rss>
