<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:10:30 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-07904</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07904</link>
      <description>bdu:2026-07904</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07904</guid>
    </item>
    <item>
      <title>EUVD-2026-276859</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-276859</link>
      <description>EUVD-2026-276859</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-276859</guid>
    </item>
    <item>
      <title>fkie_cve-2026-33372</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33372</link>
      <description>&lt;p&gt;An issue was discovered in Zimbra Collaboration (ZCS) 10.0 and 10.1. A cross-site request forgery (CSRF) vulnerability exists in Zimbra Webmail due to improper validation of CSRF tokens. The application accepts CSRF tokens supplied within the request body instead of requiring them through the expected request header. An attacker can exploit this issue by tricking an authenticated user into submitting a crafted request. This may allow unauthorized actions to be performed on behalf of the victim.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in Zimbra Collaboration (ZCS) 10.0 and 10.1. A cross-site request forgery (CSRF) vulnerability exists in Zimbra Webmail due to improper validation of CSRF tokens. The application accepts CSRF tokens supplied within the request body instead of requiring them through the expected request header. An attacker can exploit this issue by tricking an authenticated user into submitting a crafted request. This may allow unauthorized actions to be performed on behalf of the victim.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-33372</guid>
    </item>
    <item>
      <title>GHSA-fmww-x8fc-gqfj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fmww-x8fc-gqfj</link>
      <description>&lt;p&gt;An issue was discovered in Zimbra Collaboration (ZCS) 10.0 and 10.1. A cross-site request forgery (CSRF) vulnerability exists in Zimbra Webmail due to improper validation of CSRF tokens. The application accepts CSRF tokens supplied within the request body instead of requiring them through the expected request header. An attacker can exploit this issue by tricking an authenticated user into submitting a crafted request. This may allow unauthorized actions to be performed on behalf of the victim.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in Zimbra Collaboration (ZCS) 10.0 and 10.1. A cross-site request forgery (CSRF) vulnerability exists in Zimbra Webmail due to improper validation of CSRF tokens. The application accepts CSRF tokens supplied within the request body instead of requiring them through the expected request header. An attacker can exploit this issue by tricking an authenticated user into submitting a crafted request. This may allow unauthorized actions to be performed on behalf of the victim.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fmww-x8fc-gqfj</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0388 — Synacor Zimbra: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0388</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Synacor Zimbra ausnutzen, um Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Synacor Zimbra ausnutzen, um Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0388</guid>
    </item>
  </channel>
</rss>
