<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 22:41:55 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-263321</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-263321</link>
      <description>EUVD-2026-263321</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-263321</guid>
    </item>
    <item>
      <title>fkie_cve-2025-67648</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-67648</link>
      <description>&lt;p&gt;Shopware is an open commerce platform. Versions 6.4.6.0 through 6.6.10.9 and 6.7.0.0 through 6.7.5.0 have a Reflected XSS vulnerability in AuthController.php. A request parameter from the login page URL is directly rendered within the Twig template of the Storefront login page without further processing or input validation. This allows direct code injection into the template via the URL parameter, waitTime, which lacks proper input validation. This issue is fixed in versions 6.6.10.10 and 6.7.5.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Shopware is an open commerce platform. Versions 6.4.6.0 through 6.6.10.9 and 6.7.0.0 through 6.7.5.0 have a Reflected XSS vulnerability in AuthController.php. A request parameter from the login page URL is directly rendered within the Twig template of the Storefront login page without further processing or input validation. This allows direct code injection into the template via the URL parameter, waitTime, which lacks proper input validation. This issue is fixed in versions 6.6.10.10 and 6.7.5.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-67648</guid>
    </item>
    <item>
      <title>GHSA-6w82-v552-wjw2 — Shopware Storefront Reflected XSS in Storefront Login Page</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6w82-v552-wjw2</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: shopware/shopware, Packagist: shopware/storefront&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;By exploiting the XSS vulnerabilities, malicious actors can perform harmful actions in the user&amp;#39;s web browser in the session context of the affected user. Some examples of this include, but are not limited to: Obtaining user session tokens. Performing administrative actions (when an administrative user is affected). These vulnerabilities pose a high security risk. Since a sensitive cookie is not configured with the HttpOnly attribute and administrator JWTs are stored in sessionStorage, any successful XSS attack could enable the theft of session cookies and administrative tokens.&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;A request parameter from the URL of the login page is directly rendered within the Twig template of the Storefront login page without further processing or input validation. This allows direct code injection into the template via the URL parameter. An attacker can create malicious links that could be used in a phishing attack. The parameter `waitTime` lacks proper input validation.&lt;/p&gt;
&lt;p&gt;The attack can be tested with the following URL pattern:&lt;/p&gt;
&lt;p&gt;```
/account/login?loginError=1&amp;amp;waitTime=&amp;lt;a%20href%3D&amp;#34;https%3A%2F%2Fde.wikipedia.org%2Fwiki%2FPhishing&amp;#34;&amp;gt;Here&amp;lt;%2Fa&amp;gt;
```&lt;/p&gt;
&lt;p&gt;The same applies to the `errorSnippet` parameter:&lt;/p&gt;
&lt;p&gt;```
/account/login?loginError=1&amp;amp;errorSnippet=Reset%20your%20password%20%3Ca%20href%3D%22https%3A%2F%2Fde.wikipedia.org%2Fwiki%2FPhishing%22%3Ehere%3C%2Fa%3E.
```&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: shopware/shopware, Packagist: shopware/storefront&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;By exploiting the XSS vulnerabilities, malicious actors can perform harmful actions in the user&amp;#39;s web browser in the session context of the affected user. Some examples of this include, but are not limited to: Obtaining user session tokens. Performing administrative actions (when an administrative user is affected). These vulnerabilities pose a high security risk. Since a sensitive cookie is not configured with the HttpOnly attribute and administrator JWTs are stored in sessionStorage, any successful XSS attack could enable the theft of session cookies and administrative tokens.&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;A request parameter from the URL of the login page is directly rendered within the Twig template of the Storefront login page without further processing or input validation. This allows direct code injection into the template via the URL parameter. An attacker can create malicious links that could be used in a phishing attack. The parameter `waitTime` lacks proper input validation.&lt;/p&gt;
&lt;p&gt;The attack can be tested with the following URL pattern:&lt;/p&gt;
&lt;p&gt;```
/account/login?loginError=1&amp;amp;waitTime=&amp;lt;a%20href%3D&amp;#34;https%3A%2F%2Fde.wikipedia.org%2Fwiki%2FPhishing&amp;#34;&amp;gt;Here&amp;lt;%2Fa&amp;gt;
```&lt;/p&gt;
&lt;p&gt;The same applies to the `errorSnippet` parameter:&lt;/p&gt;
&lt;p&gt;```
/account/login?loginError=1&amp;amp;errorSnippet=Reset%20your%20password%20%3Ca%20href%3D%22https%3A%2F%2Fde.wikipedia.org%2Fwiki%2FPhishing%22%3Ehere%3C%2Fa%3E.
```&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6w82-v552-wjw2</guid>
    </item>
  </channel>
</rss>
