<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T17:29:30.060078+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2009-avi-157</id>
    <title>certa-2009-avi-157 — Plusieurs vulnérabilités ont été identifiées dans le navigateur Mozilla
Firefox. L'exploitation de celles-ci peut avoir…</title>
    <updated>2026-10-02T17:29:30.152743+00:00</updated>
    <content>certa-2009-avi-157</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2009-avi-157"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-121753</id>
    <title>EUVD-2026-121753</title>
    <updated>2026-10-02T17:29:30.152792+00:00</updated>
    <content>EUVD-2026-121753</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-121753"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2009-0652</id>
    <title>fkie_cve-2009-0652</title>
    <updated>2026-10-02T17:29:30.152807+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Internationalized Domain Names (IDN) blacklist in Mozilla Firefox 3.0.6 and other versions before 3.0.9; Thunderbird before 2.0.0.21; and SeaMonkey before 1.1.15 does not include box-drawing characters, which allows remote attackers to spoof URLs and conduct phishing attacks, as demonstrated by homoglyphs of the / (slash) and ? (question mark) characters in a subdomain of a .cn domain name, a different vulnerability than CVE-2005-0233.  NOTE: some third parties claim that 3.0.6 is not affected, but much older versions perhaps are affected.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2009-0652"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-h8qx-x78q-837g</id>
    <title>GHSA-h8qx-x78q-837g</title>
    <updated>2026-10-02T17:29:30.152840+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Internationalized Domain Names (IDN) blacklist in Mozilla Firefox 3.0.6 and other versions before 3.0.9; Thunderbird before 2.0.0.21; and SeaMonkey before 1.1.15 does not include box-drawing characters, which allows remote attackers to spoof URLs and conduct phishing attacks, as demonstrated by homoglyphs of the / (slash) and ? (question mark) characters in a subdomain of a .cn domain name, a different vulnerability than CVE-2005-0233.  NOTE: some third parties claim that 3.0.6 is not affected, but much older versions perhaps are affected.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-h8qx-x78q-837g"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2009-0652</id>
    <title>gsd-2009-0652</title>
    <updated>2026-10-02T17:29:30.152859+00:00</updated>
    <content>gsd-2009-0652</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2009-0652"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</id>
    <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
    <updated>2026-10-02T17:29:30.152870+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>MozillaFirefox-50.1.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2009:0436</id>
    <title>RHSA-2009:0436 — Red Hat Security Advisory: firefox security update</title>
    <updated>2026-10-02T17:29:30.153348+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>firefox: does not properly prevent the literal rendering of homoglyph characters in IDN domain names (spoof URLs and conduct phishing attacks) Firefox 3 Layout engine crashes Firefox 2 and 3 Layout engine crash Firefox 3 JavaScript engine crashes Firefox 2 and 3 JavaScript engine crash jar: scheme ignores the content-disposition: header on the inner URI view-source: protocol Firefox XSS hazard using third-party stylesheets and XBL bindings Firefox Same-origin violations in XMLHttpRequest and XPCNativeWrapper.toString Firefox Malicious search plugins can inject code into arbitrary sites Firefox POST data sent to wrong site when saving web page with embedded frame javascript: URIs</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2009:0436"/>
  </entry>
</feed>
