<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 18:08:13 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-3894 — Stored XSS in MegaBIP</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-3894</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Jan Syski MegaBIP&lt;/p&gt;
&lt;p&gt;Text editor embedded into MegaBIP software does not neutralize user input allowing Stored XSS attacks on other users. In order to use the editor high privileges are required.  
Version 5.20 of MegaBIP fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Jan Syski MegaBIP&lt;/p&gt;
&lt;p&gt;Text editor embedded into MegaBIP software does not neutralize user input allowing Stored XSS attacks on other users. In order to use the editor high privileges are required.  
Version 5.20 of MegaBIP fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-3894</guid>
    </item>
  </channel>
</rss>
