<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 21:43:53 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-321538</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-321538</link>
      <description>EUVD-2026-321538</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-321538</guid>
    </item>
    <item>
      <title>fkie_cve-2026-40607</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-40607</link>
      <description>&lt;p&gt;Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.11.0 through 2.28.1, a Stored XSS vulnerability is caused by incorrect escaping of a saved filter&amp;#39;s owner, allowing an attacker to inject arbitrary HTML on systems where $g_show_user_realname = ON. Note that By default, only users with Manager access level or above can save their filters publicly. This issue has been fixed in version 2.28.2. If developers are unable to update immediately, they can work around this issue by preventing display of users&amp;#39; real names (set $g_ show_user_realname = OFF; in configuration), and restricting the ability to store filters (set $g_stored_query_create_threshold / $g_stored_query_create_shared_threshold to NOBODY).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions 2.11.0 through 2.28.1, a Stored XSS vulnerability is caused by incorrect escaping of a saved filter&amp;#39;s owner, allowing an attacker to inject arbitrary HTML on systems where $g_show_user_realname = ON. Note that By default, only users with Manager access level or above can save their filters publicly. This issue has been fixed in version 2.28.2. If developers are unable to update immediately, they can work around this issue by preventing display of users&amp;#39; real names (set $g_ show_user_realname = OFF; in configuration), and restricting the ability to store filters (set $g_stored_query_create_threshold / $g_stored_query_create_shared_threshold to NOBODY).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-40607</guid>
    </item>
    <item>
      <title>GHSA-f633-865q-2mhh — MantisBT is Vulnerable to Stored XSS in Saved-Filter Owner Column</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f633-865q-2mhh</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: mantisbt/mantisbt&lt;/p&gt;
&lt;p&gt;Incorrect escaping of a saved filter&amp;#39;s owner allows an attacker to inject arbitrary HTML on systems where $g_show_user_realname = ON.&lt;/p&gt;
&lt;p&gt;### Impact
Cross-site scripting (XSS).&lt;/p&gt;
&lt;p&gt;Note that By default, only users with *Manager* access level or above can save their filters publicly&lt;/p&gt;
&lt;p&gt;### Patches
- 44f490bcf20fd491c1b8f3fc9dd041d8c2a30010&lt;/p&gt;
&lt;p&gt;### Workarounds
- Prevent display of users&amp;#39; real name (set `$g_ show_user_realname = OFF;` in configuration)
- Restrict ability to store filters (set $`g_stored_query_create_threshold` / $`g_stored_query_create_shared_threshold` to `NOBODY`&lt;/p&gt;
&lt;p&gt;### Credits
Thanks to siunam (Tang Cheuk Hei) for discovering and responsibly reporting the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: mantisbt/mantisbt&lt;/p&gt;
&lt;p&gt;Incorrect escaping of a saved filter&amp;#39;s owner allows an attacker to inject arbitrary HTML on systems where $g_show_user_realname = ON.&lt;/p&gt;
&lt;p&gt;### Impact
Cross-site scripting (XSS).&lt;/p&gt;
&lt;p&gt;Note that By default, only users with *Manager* access level or above can save their filters publicly&lt;/p&gt;
&lt;p&gt;### Patches
- 44f490bcf20fd491c1b8f3fc9dd041d8c2a30010&lt;/p&gt;
&lt;p&gt;### Workarounds
- Prevent display of users&amp;#39; real name (set `$g_ show_user_realname = OFF;` in configuration)
- Restrict ability to store filters (set $`g_stored_query_create_threshold` / $`g_stored_query_create_shared_threshold` to `NOBODY`&lt;/p&gt;
&lt;p&gt;### Credits
Thanks to siunam (Tang Cheuk Hei) for discovering and responsibly reporting the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f633-865q-2mhh</guid>
    </item>
  </channel>
</rss>
