<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 21:26:50 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-00015</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-00015</link>
      <description>bdu:2026-00015</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-00015</guid>
    </item>
    <item>
      <title>EUVD-2026-252532</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-252532</link>
      <description>EUVD-2026-252532</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-252532</guid>
    </item>
    <item>
      <title>fkie_cve-2025-8557</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-8557</link>
      <description>&lt;p&gt;An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability:&lt;/p&gt;
&lt;p&gt;An attacker with access to a device on the local Lenovo XClarity Orchestrator (LXCO) network segment may be able to manipulate the local device to create an alternate communication channel which could allow the attacker, under certain conditions, to directly interact with backend LXCO API services typically inaccessible to users. While access controls may limit the scope of interaction, this could result in unauthorized access to internal functionality or data. This issue is not exploitable from remote networks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability:&lt;/p&gt;
&lt;p&gt;An attacker with access to a device on the local Lenovo XClarity Orchestrator (LXCO) network segment may be able to manipulate the local device to create an alternate communication channel which could allow the attacker, under certain conditions, to directly interact with backend LXCO API services typically inaccessible to users. While access controls may limit the scope of interaction, this could result in unauthorized access to internal functionality or data. This issue is not exploitable from remote networks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-8557</guid>
    </item>
    <item>
      <title>GHSA-rg5h-x2jj-82px</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rg5h-x2jj-82px</link>
      <description>&lt;p&gt;An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability:&lt;/p&gt;
&lt;p&gt;An attacker with access to a device on the local Lenovo XClarity Orchestrator (LXCO) network segment may be able to manipulate the local device to create an alternate communication channel which could allow the attacker, under certain conditions, to directly interact with backend LXCO API services typically inaccessible to users. While access controls may limit the scope of interaction, this could result in unauthorized access to internal functionality or data. This issue is not exploitable from remote networks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An internal product security audit of Lenovo XClarity Orchestrator (LXCO) discovered the below vulnerability:&lt;/p&gt;
&lt;p&gt;An attacker with access to a device on the local Lenovo XClarity Orchestrator (LXCO) network segment may be able to manipulate the local device to create an alternate communication channel which could allow the attacker, under certain conditions, to directly interact with backend LXCO API services typically inaccessible to users. While access controls may limit the scope of interaction, this could result in unauthorized access to internal functionality or data. This issue is not exploitable from remote networks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rg5h-x2jj-82px</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2013 — Lenovo XClarity Orchestrator: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2013</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Lenovo XClarity Orchestrator ausnutzen, um Sicherheitsvorkehrungen zu umgehen und so Zugriff auf interne Funktionen oder Daten zu erhalten.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Lenovo XClarity Orchestrator ausnutzen, um Sicherheitsvorkehrungen zu umgehen und so Zugriff auf interne Funktionen oder Daten zu erhalten.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2013</guid>
    </item>
  </channel>
</rss>
