<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T14:52:33.970728+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2008-avi-284</id>
    <title>certa-2008-avi-284 — Une vulnérabilité dans &lt;span class="textit"&gt;Tomcat&lt;/span&gt; permet à un
utilisateur malveillant de réaliser de l'injectio…</title>
    <updated>2026-10-03T14:52:33.981199+00:00</updated>
    <content>certa-2008-avi-284</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2008-avi-284"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-127099</id>
    <title>EUVD-2026-127099</title>
    <updated>2026-10-03T14:52:33.981235+00:00</updated>
    <content>EUVD-2026-127099</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-127099"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2008-1947</id>
    <title>fkie_cve-2008-1947</title>
    <updated>2026-10-03T14:52:33.981249+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cross-site scripting (XSS) vulnerability in Apache Tomcat 5.5.9 through 5.5.26 and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the hostname attribute) to host-manager/html/add.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2008-1947"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f98p-9pp6-7q6c</id>
    <title>GHSA-f98p-9pp6-7q6c — Apache Tomcat Cross-site scripting (XSS) vulnerability</title>
    <updated>2026-10-03T14:52:33.981276+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.tomcat:tomcat, Maven: org.apache.tomcat.embed:tomcat-embed-core</p>
<p>Cross-site scripting (XSS) vulnerability in Apache Tomcat 5.5.9 through 5.5.26 and 6.0.0 through 6.0.16 allows remote attackers to inject arbitrary web script or HTML via the name parameter (aka the hostname attribute) to `host-manager/html/add`.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f98p-9pp6-7q6c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2008-1947</id>
    <title>gsd-2008-1947</title>
    <updated>2026-10-03T14:52:33.981301+00:00</updated>
    <content>gsd-2008-1947</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2008-1947"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2008:0648</id>
    <title>RHSA-2008:0648 — Red Hat Security Advisory: tomcat security update</title>
    <updated>2026-10-03T14:52:33.981313+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>tomcat: Cross-Site-Scripting enabled by sendError call Tomcat host manager xss - name field tomcat RequestDispatcher information disclosure vulnerability tomcat Unicode directory traversal vulnerability</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2008:0648"/>
  </entry>
</feed>
