<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:08:29.386289+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2011-avi-703</id>
    <title>certa-2011-avi-703 — Plusieurs vulnérabilités affectent JBoss. Elles permettent de contourner
la politique de sécurité du serveur ou de réal…</title>
    <updated>2026-10-03T00:08:29.397974+00:00</updated>
    <content>certa-2011-avi-703</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2011-avi-703"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-116660</id>
    <title>EUVD-2026-116660</title>
    <updated>2026-10-03T00:08:29.398016+00:00</updated>
    <content>EUVD-2026-116660</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-116660"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2011-4085</id>
    <title>fkie_cve-2011-4085</title>
    <updated>2026-10-03T00:08:29.398031+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The servlets invoked by httpha-invoker in JBoss Enterprise Application Platform before 5.1.2, SOA Platform before 5.2.0, BRMS Platform before 5.3.0, and Portal Platform before 4.3 CP07 perform access control only for the GET and POST methods, which allow remote attackers to bypass authentication by sending a request with a different method.  NOTE: this vulnerability exists because of a CVE-2010-0738 regression.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2011-4085"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-24wp-35x7-5hx9</id>
    <title>GHSA-24wp-35x7-5hx9</title>
    <updated>2026-10-03T00:08:29.398059+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The servlets invoked by httpha-invoker in JBoss Enterprise Application Platform before 5.1.2, SOA Platform before 5.2.0, BRMS Platform before 5.3.0, and Portal Platform before 4.3 CP07 perform access control only for the GET and POST methods, which allow remote attackers to bypass authentication by sending a request with a different method.  NOTE: this vulnerability exists because of a CVE-2010-0738 regression.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-24wp-35x7-5hx9"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2011-4085</id>
    <title>gsd-2011-4085</title>
    <updated>2026-10-03T00:08:29.398076+00:00</updated>
    <content>gsd-2011-4085</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2011-4085"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2011:1456</id>
    <title>RHSA-2011:1456 — Red Hat Security Advisory: JBoss Enterprise SOA Platform 5.2.0 update</title>
    <updated>2026-10-03T00:08:29.398087+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jruby: XSS in the regular expression engine when processing invalid UTF-8 byte sequences Invoker servlets authentication bypass (HTTP verb tampering)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2011:1456"/>
  </entry>
</feed>
