<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 19:27:51 +0000</lastBuildDate>
    <item>
      <title>CVE-2026-7182 — Path Traversal in Diagram</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-7182</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; DHTMLX Diagram&lt;/p&gt;
&lt;p&gt;Diagram&amp;#39;s export module is vulnerable to Path Traversal in src attribute due to lack of HTML sanitization. An unauthenticated user could craft the html payload which could include
 local files from the server and display them in the generated pdf.&lt;/p&gt;
&lt;p&gt;This issue was fixed in version 1.1.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; DHTMLX Diagram&lt;/p&gt;
&lt;p&gt;Diagram&amp;#39;s export module is vulnerable to Path Traversal in src attribute due to lack of HTML sanitization. An unauthenticated user could craft the html payload which could include
 local files from the server and display them in the generated pdf.&lt;/p&gt;
&lt;p&gt;This issue was fixed in version 1.1.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-7182</guid>
    </item>
  </channel>
</rss>
