<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:08:44 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-291159</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-291159</link>
      <description>EUVD-2026-291159</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-291159</guid>
    </item>
    <item>
      <title>fkie_cve-2026-23782</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-23782</link>
      <description>&lt;p&gt;An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. An API management endpoint allows unauthenticated users to obtain both an API identifier and its corresponding secret value. With these exposed secrets, an attacker could invoke privileged API operations, potentially leading to unauthorized access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. An API management endpoint allows unauthenticated users to obtain both an API identifier and its corresponding secret value. With these exposed secrets, an attacker could invoke privileged API operations, potentially leading to unauthorized access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-23782</guid>
    </item>
    <item>
      <title>GHSA-83mf-f2q6-j3gg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-83mf-f2q6-j3gg</link>
      <description>&lt;p&gt;An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. An API management endpoint allows unauthenticated users to obtain both an API identifier and its corresponding secret value. With these exposed secrets, an attacker could invoke privileged API operations, potentially leading to unauthorized access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. An API management endpoint allows unauthenticated users to obtain both an API identifier and its corresponding secret value. With these exposed secrets, an attacker could invoke privileged API operations, potentially leading to unauthorized access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-83mf-f2q6-j3gg</guid>
    </item>
  </channel>
</rss>
