<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 19:31:04 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-275004</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-275004</link>
      <description>EUVD-2026-275004</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-275004</guid>
    </item>
    <item>
      <title>fkie_cve-2026-30838</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-30838</link>
      <description>&lt;p&gt;league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing &amp;gt;. For example, &amp;lt;script\n&amp;gt; would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input. All applications using the DisallowedRawHtml extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected. This issue has been patched in version 2.8.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing &amp;gt;. For example, &amp;lt;script\n&amp;gt; would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input. All applications using the DisallowedRawHtml extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected. This issue has been patched in version 2.8.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-30838</guid>
    </item>
    <item>
      <title>GHSA-4v6x-c7xx-hw9f — CommonMark has DisallowedRawHtml extension bypass via whitespace in HTML tag names</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4v6x-c7xx-hw9f</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: league/commonmark&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;The `DisallowedRawHtml` extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing `&amp;gt;`. For example, `&amp;lt;script\n&amp;gt;` would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input.&lt;/p&gt;
&lt;p&gt;All applications using the `DisallowedRawHtml` extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Fixed in 2.8.1. The regex character class `[ \/&amp;gt;]` was changed to `[\s\/&amp;gt;]` to match all whitespace characters that browsers accept as valid tag name terminators.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;- Set the `html_input` configuration option to `&amp;#39;escape&amp;#39;` or `&amp;#39;strip&amp;#39;` to disable all raw HTML, though this is a broader restriction than the `DisallowedRawHtml` extension provides.
- Pass the rendered HTML through a dedicated HTML sanitizer before serving it to users ([always recommended](https://commonmark.thephpleague.com/2.x/security/#additional-filtering))&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: league/commonmark&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;The `DisallowedRawHtml` extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing `&amp;gt;`. For example, `&amp;lt;script\n&amp;gt;` would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input.&lt;/p&gt;
&lt;p&gt;All applications using the `DisallowedRawHtml` extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected.&lt;/p&gt;
&lt;p&gt;### Patches&lt;/p&gt;
&lt;p&gt;Fixed in 2.8.1. The regex character class `[ \/&amp;gt;]` was changed to `[\s\/&amp;gt;]` to match all whitespace characters that browsers accept as valid tag name terminators.&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;- Set the `html_input` configuration option to `&amp;#39;escape&amp;#39;` or `&amp;#39;strip&amp;#39;` to disable all raw HTML, though this is a broader restriction than the `DisallowedRawHtml` extension provides.
- Pass the rendered HTML through a dedicated HTML sanitizer before serving it to users ([always recommended](https://commonmark.thephpleague.com/2.x/security/#additional-filtering))&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4v6x-c7xx-hw9f</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-30838</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-30838</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: php-league-commonmark, Ubuntu:Pro:22.04:LTS: php-league-commonmark, Ubuntu:Pro:24.04:LTS: php-league-commonmark, Ubuntu:25.10: php-league-commonmark, Ubuntu:26.04:LTS: php-league-commonmark&lt;/p&gt;
&lt;p&gt;league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing &amp;gt;. For example, &amp;lt;script\n&amp;gt; would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input. All applications using the DisallowedRawHtml extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected. This issue has been patched in version 2.8.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: php-league-commonmark, Ubuntu:Pro:22.04:LTS: php-league-commonmark, Ubuntu:Pro:24.04:LTS: php-league-commonmark, Ubuntu:25.10: php-league-commonmark, Ubuntu:26.04:LTS: php-league-commonmark&lt;/p&gt;
&lt;p&gt;league/commonmark is a PHP Markdown parser. Prior to version 2.8.1, the DisallowedRawHtml extension can be bypassed by inserting a newline, tab, or other ASCII whitespace character between a disallowed HTML tag name and the closing &amp;gt;. For example, &amp;lt;script\n&amp;gt; would pass through unfiltered and be rendered as a valid HTML tag by browsers. This is a cross-site scripting (XSS) vector for any application that relies on this extension to sanitize untrusted user input. All applications using the DisallowedRawHtml extension to process untrusted markdown are affected. Applications that use a dedicated HTML sanitizer (such as HTML Purifier) on the rendered output are not affected. This issue has been patched in version 2.8.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-30838</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1001 — Snipe-IT: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen und potenziell Cross-Site Scripting</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1001</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Snipe-IT ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und potenziell um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Snipe-IT ausnutzen, um Sicherheitsvorkehrungen zu umgehen, und potenziell um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1001</guid>
    </item>
  </channel>
</rss>
