<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 04:25:31 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-364339</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-364339</link>
      <description>EUVD-2026-364339</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-364339</guid>
    </item>
    <item>
      <title>fkie_cve-2026-54203</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54203</link>
      <description>&lt;p&gt;Memory Leak to an Unauthorized Actor vulnerability in Tobit Laboratories AG TeamDavid&amp;#39;s Webbox allows reading of sensitive information. When accessing the URL “/.well-known/mta-sts.”, the application responds
 with memory. By repeatedly 
requesting this endpoint, an attacker can access sensitive 
information, including user passwords. Exploitation does not require 
authentication. This issue affects TeamDavid before Rollout 528.&lt;/p&gt;
&lt;p&gt;Starting with Rollout 528 (June 30, 2026), the affected functionality is disabled by default and the vulnerabilities are therefore no longer exposed through this functionality.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Memory Leak to an Unauthorized Actor vulnerability in Tobit Laboratories AG TeamDavid&amp;#39;s Webbox allows reading of sensitive information. When accessing the URL “/.well-known/mta-sts.”, the application responds
 with memory. By repeatedly 
requesting this endpoint, an attacker can access sensitive 
information, including user passwords. Exploitation does not require 
authentication. This issue affects TeamDavid before Rollout 528.&lt;/p&gt;
&lt;p&gt;Starting with Rollout 528 (June 30, 2026), the affected functionality is disabled by default and the vulnerabilities are therefore no longer exposed through this functionality.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-54203</guid>
    </item>
    <item>
      <title>GHSA-v8q6-f954-39gq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-v8q6-f954-39gq</link>
      <description>&lt;p&gt;Memory Leak to an Unauthorized Actor vulnerability in Tobit Laboratories AG TeamDavid&amp;#39;s Webbox allows reading of sensitive information. When accessing the URL “/.well-known/mta-sts.”, the application responds
 with memory. By repeatedly 
requesting this endpoint, an attacker can access sensitive 
information, including user passwords. Exploitation does not require 
authentication. This issue affects TeamDavid through Rollout 524.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Memory Leak to an Unauthorized Actor vulnerability in Tobit Laboratories AG TeamDavid&amp;#39;s Webbox allows reading of sensitive information. When accessing the URL “/.well-known/mta-sts.”, the application responds
 with memory. By repeatedly 
requesting this endpoint, an attacker can access sensitive 
information, including user passwords. Exploitation does not require 
authentication. This issue affects TeamDavid through Rollout 524.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-v8q6-f954-39gq</guid>
    </item>
  </channel>
</rss>
