<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 11:39:15 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-361202</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-361202</link>
      <description>EUVD-2026-361202</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-361202</guid>
    </item>
    <item>
      <title>fkie_cve-2026-82235</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-82235</link>
      <description>&lt;p&gt;filebrowser through 2.63.23 fails to validate named pipes in directory archive and public download handlers, allowing attackers to trigger blocking open syscalls. Authenticated users or anonymous visitors with public share links can repeatedly request archives containing named pipes to pin server goroutines and exhaust connection resources.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;filebrowser through 2.63.23 fails to validate named pipes in directory archive and public download handlers, allowing attackers to trigger blocking open syscalls. Authenticated users or anonymous visitors with public share links can repeatedly request archives containing named pipes to pin server goroutines and exhaust connection resources.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-82235</guid>
    </item>
    <item>
      <title>GHSA-j27f-mghv-p674</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j27f-mghv-p674</link>
      <description>&lt;p&gt;filebrowser through 2.63.23 fails to validate named pipes in directory archive and public download handlers, allowing attackers to trigger blocking open syscalls. Authenticated users or anonymous visitors with public share links can repeatedly request archives containing named pipes to pin server goroutines and exhaust connection resources.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;filebrowser through 2.63.23 fails to validate named pipes in directory archive and public download handlers, allowing attackers to trigger blocking open syscalls. Authenticated users or anonymous visitors with public share links can repeatedly request archives containing named pipes to pin server goroutines and exhaust connection resources.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j27f-mghv-p674</guid>
    </item>
  </channel>
</rss>
