<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 10:08:59 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-276013</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-276013</link>
      <description>EUVD-2026-276013</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-276013</guid>
    </item>
    <item>
      <title>fkie_cve-2026-30955</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-30955</link>
      <description>&lt;p&gt;Gokapi is a self-hosted file sharing server with automatic expiration and encryption support. Prior to 2.2.4, An API endpoint accepts unbounded request bodies without any size limit. An authenticated user can cause an OOM kill and complete service disruption for all users. This vulnerability is fixed in 2.2.4.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Gokapi is a self-hosted file sharing server with automatic expiration and encryption support. Prior to 2.2.4, An API endpoint accepts unbounded request bodies without any size limit. An authenticated user can cause an OOM kill and complete service disruption for all users. This vulnerability is fixed in 2.2.4.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-30955</guid>
    </item>
    <item>
      <title>GHSA-qwc6-vc2v-2ggj — Gokapi vulnerable to DoS in E2E Metadata Parser</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qwc6-vc2v-2ggj</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/forceu/gokapi&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;An API endpoint accepts unbounded request bodies without any size limit. An authenticated user can cause an OOM kill and complete service disruption for all users.&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Any authenticated user can crash the Gokapi server by sending concurrent large payloads.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/forceu/gokapi&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;An API endpoint accepts unbounded request bodies without any size limit. An authenticated user can cause an OOM kill and complete service disruption for all users.&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;Any authenticated user can crash the Gokapi server by sending concurrent large payloads.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qwc6-vc2v-2ggj</guid>
    </item>
  </channel>
</rss>
