<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:00:12.681014+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-120118</id>
    <title>EUVD-2026-120118</title>
    <updated>2026-10-03T09:00:12.687701+00:00</updated>
    <content>EUVD-2026-120118</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-120118"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2010-3708</id>
    <title>fkie_cve-2010-3708</title>
    <updated>2026-10-03T09:00:12.687735+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2010-3708"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qvq6-cw53-rmwg</id>
    <title>GHSA-qvq6-cw53-rmwg — Drools Improper Input Validation vulnerability allows remote attackers to execute arbitrary code in JBoss EAP</title>
    <updated>2026-10-03T09:00:12.687765+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.drools:drools-core</p>
<p>The serialization implementation in JBoss Drools in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 and JBoss Enterprise SOA Platform 4.2 and 4.3 supports the embedding of class files, which allows remote attackers to execute arbitrary code via a crafted static initializer.</p>
<p>The maintainers of JBoss EAP patched the vulnerability by applying a fix from Drools 4.0.7.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qvq6-cw53-rmwg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2010-3708</id>
    <title>gsd-2010-3708</title>
    <updated>2026-10-03T09:00:12.687791+00:00</updated>
    <content>gsd-2010-3708</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2010-3708"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2010:0937</id>
    <title>RHSA-2010:0937 — Red Hat Security Advisory: JBoss Enterprise Application Platform 4.3.0.CP09 update</title>
    <updated>2026-10-03T09:00:12.687803+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>JBoss drools deserialization remote code execution JBoss Remoting Denial-Of-Service JBoss EAP jmx console FileDeployment CSRF</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2010:0937"/>
  </entry>
</feed>
