<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Cve on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/cve/</link>
    <description>Recent content in Cve on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 24 Feb 2026 13:25:21 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/cve/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Black Formatter Version 23.x Faces CVE-2024-21503</title>
      <link>https://cluster-site.onrender.com/posts/black-formatter-version-23.x-faces-cve-2024-21503/</link>
      <pubDate>Tue, 24 Feb 2026 12:39:42 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/black-formatter-version-23.x-faces-cve-2024-21503/</guid>
      <description>• LLVM recommends using Black 23.x for Python code formatting. • Black 23.x faces CVE-2024-21503, a regex denial-of-service vulnerability. • The vulnerability could trigger excessi</description>
    </item>
    <item>
      <title>Notepad&#43;&#43; Fixes Hijacked Update Mechanism Used to Deliver Targeted Malware</title>
      <link>https://cluster-site.onrender.com/posts/notepad-fixes-hijacked-update-mechanism-used-to-deliver-targeted-malware/</link>
      <pubDate>Wed, 18 Feb 2026 07:40:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/notepad-fixes-hijacked-update-mechanism-used-to-deliver-targeted-malware/</guid>
      <description>• Notepad++ released 8.9.2 patch to fix hijacked update mechanism exploited by Chinese threat actor. • Introduces &amp;lsquo;double lock&amp;rsquo; design, verifying signed installer and XML from upda</description>
    </item>
    <item>
      <title>CVE-2025-6978: Arbitrary Code Execution in the Arista NG Firewall</title>
      <link>https://cluster-site.onrender.com/posts/cve-2025-6978-arbitrary-code-execution-in-the-arista-ng-firewall/</link>
      <pubDate>Thu, 05 Feb 2026 16:45:49 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/cve-2025-6978-arbitrary-code-execution-in-the-arista-ng-firewall/</guid>
      <description>• CVE-2025-6978 exposes command injection in Arista NG Firewall&amp;rsquo;s diagnostics component. • Remote authenticated attackers can craft HTTP requests to execute arbitrary commands as r</description>
    </item>
    <item>
      <title>Privileged File System Vulnerability Present in a SCADA System</title>
      <link>https://cluster-site.onrender.com/posts/privileged-file-system-vulnerability-present-in-a-scada-system/</link>
      <pubDate>Fri, 30 Jan 2026 23:00:01 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/privileged-file-system-vulnerability-present-in-a-scada-system/</guid>
      <description>• Iconics Suite SCADA system vulnerable (CVE-2025-0921) allows privilege escalation via unnecessary file system operations. • Exploitation can corrupt critical binaries, leading to</description>
    </item>
  </channel>
</rss>
