<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
  <channel>
    <title>IsItPatched — Hugo security feed</title>
    <link>https://isitpatched.com/hugo</link>
    <atom:link href="https://isitpatched.com/feed/product/hugo.xml" rel="self" type="application/rss+xml" />
    <description>Security alerts for Hugo: newly-exploited CVEs and end-of-life events from IsItPatched.</description>
    <language>en</language>
    <copyright>Compiled by IsItPatched (isitpatched.com) from NVD, CISA KEV, EPSS and endoflife.date.</copyright>
    <generator>IsItPatched (https://isitpatched.com)</generator>
    <docs>https://www.rssboard.org/rss-specification</docs>
    <ttl>15</ttl>
    <image>
      <url>https://isitpatched.com/icon-192.png</url>
      <title>IsItPatched — Hugo security feed</title>
      <link>https://isitpatched.com/hugo</link>
    </image>
    <lastBuildDate>Thu, 18 Jun 2026 00:34:29 GMT</lastBuildDate>
    <item>
      <title>Hugo: CVE-2026-44301 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2026-44301</link>
      <guid isPermaLink="false">hugo|CVE-2026-44301</guid>
      <description>Severity: High (CVSS 8.1) · Path traversal · EPSS 0%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/hugo.xml">IsItPatched</source>
      <pubDate>Tue, 12 May 2026 22:16:36 GMT</pubDate>
    </item>
    <item>
      <title>Hugo: CVE-2026-35166 (Medium)</title>
      <link>https://isitpatched.com/cve/CVE-2026-35166</link>
      <guid isPermaLink="false">hugo|CVE-2026-35166</guid>
      <description>Severity: Medium (CVSS 5.4) · Cross-site scripting (XSS) · EPSS 0%</description>
      <category>Medium</category>
      <source url="https://isitpatched.com/feed/product/hugo.xml">IsItPatched</source>
      <pubDate>Mon, 06 Apr 2026 18:16:43 GMT</pubDate>
    </item>
    <item>
      <title>Hugo: CVE-2020-26284 (High)</title>
      <link>https://isitpatched.com/cve/CVE-2020-26284</link>
      <guid isPermaLink="false">hugo|CVE-2020-26284</guid>
      <description>Severity: High (CVSS 7.7) · OS command injection · EPSS 1%</description>
      <category>High</category>
      <source url="https://isitpatched.com/feed/product/hugo.xml">IsItPatched</source>
      <pubDate>Mon, 21 Dec 2020 23:15:12 GMT</pubDate>
    </item>
  </channel>
</rss>