<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 18:57:45 +0000</lastBuildDate>
    <item>
      <title>CVE-2026-29905</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-29905</link>
      <description>&lt;p&gt;Kirby CMS through 5.1.4 allows an authenticated user with &amp;#39;Editor&amp;#39; permissions to cause a persistent Denial of Service (DoS) via a malformed image upload. The application fails to properly validate the return value of the PHP getimagesize() function. When the system attempts to process this file for metadata or thumbnail generation, it triggers a fatal TypeError.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Kirby CMS through 5.1.4 allows an authenticated user with &amp;#39;Editor&amp;#39; permissions to cause a persistent Denial of Service (DoS) via a malformed image upload. The application fails to properly validate the return value of the PHP getimagesize() function. When the system attempts to process this file for metadata or thumbnail generation, it triggers a fatal TypeError.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-29905</guid>
    </item>
  </channel>
</rss>
