<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:55:59.744119+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-96619</id>
    <title>EUVD-2026-96619</title>
    <updated>2026-10-03T09:55:59.778511+00:00</updated>
    <content>EUVD-2026-96619</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-96619"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-0034</id>
    <title>fkie_cve-2014-0034</title>
    <updated>2026-10-03T09:55:59.778550+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SecurityTokenService (STS) in Apache CXF before 2.6.12 and 2.7.x before 2.7.9 does not properly validate SAML tokens when caching is enabled, which allows remote attackers to gain access via an invalid SAML token.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-0034"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-38x2-fp9m-87mx</id>
    <title>GHSA-38x2-fp9m-87mx — Improper Input Validation in Apache CXF</title>
    <updated>2026-10-03T09:55:59.778582+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.cxf:cxf-rt-ws-security</p>
<p>The SecurityTokenService (STS) in Apache CXF before 2.6.12 and 2.7.x before 2.7.9 does not properly validate SAML tokens when caching is enabled, which allows remote attackers to gain access via an invalid SAML token.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-38x2-fp9m-87mx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-0034</id>
    <title>gsd-2014-0034</title>
    <updated>2026-10-03T09:55:59.778606+00:00</updated>
    <content>gsd-2014-0034</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-0034"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2014:0797</id>
    <title>RHSA-2014:0797 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.2.4 update</title>
    <updated>2026-10-03T09:55:59.778618+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CXF: The SecurityTokenService accepts certain invalid SAML Tokens as valid CXF: UsernameTokens are sent in plaintext with a Symmetric EncryptBeforeSigning policy CXF: HTML content posted to SOAP endpoint could cause OOM errors CXF: Large invalid content could cause temporary space to fill JAX-RS: Information disclosure via XML eXternal Entity (XXE)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2014:0797"/>
  </entry>
</feed>
