<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:17:40.907172+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-03337</id>
    <title>bdu:2022-03337</title>
    <updated>2026-10-02T23:17:40.939332+00:00</updated>
    <content>bdu:2022-03337</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-03337"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2014-avi-111</id>
    <title>certfr-2014-avi-111 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apache Struts&lt;/span&gt;. Elles permettent à un att…</title>
    <updated>2026-10-02T23:17:40.939382+00:00</updated>
    <content>certfr-2014-avi-111</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2014-avi-111"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-96705</id>
    <title>EUVD-2026-96705</title>
    <updated>2026-10-02T23:17:40.939410+00:00</updated>
    <content>EUVD-2026-96705</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-96705"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-0050</id>
    <title>fkie_cve-2014-0050</title>
    <updated>2026-10-02T23:17:40.939430+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop's intended exit conditions.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-0050"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xx68-jfcg-xmmf</id>
    <title>GHSA-xx68-jfcg-xmmf — Commons FileUpload Denial of service vulnerability</title>
    <updated>2026-10-02T23:17:40.939473+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: commons-fileupload:commons-fileupload, Maven: org.apache.tomcat:tomcat</p>
<p>MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop's intended exit conditions.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xx68-jfcg-xmmf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-0050</id>
    <title>gsd-2014-0050</title>
    <updated>2026-10-02T23:17:40.939517+00:00</updated>
    <content>gsd-2014-0050</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-0050"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2014-000017</id>
    <title>jvndb-2014-000017</title>
    <updated>2026-10-02T23:17:40.939536+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Apache Commons FileUpload contains a denial-of-service (DoS) vulnerability.

Apache Commons FileUpload provided by Apache Software Foundation contains an issue in processing a multi-part request, which may cause the process to be in an infinite loop.

As of 2014 February 12, an exploit tool to attack against this vulnerability has been confirmed.

Hitachi Incident Response Team (HIRT) reported this vulnerability to IPA.
JPCERT/CC coordinated with the developer under Information Security Early Warning Partnership.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2014-000017"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10262-1</id>
    <title>openSUSE-SU-2024:10262-1 — jakarta-commons-fileupload-1.1.1-125.11 on GA media</title>
    <updated>2026-10-02T23:17:40.939572+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jakarta-commons-fileupload-1.1.1-125.11 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10262-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2014:0252</id>
    <title>RHSA-2014:0252 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 6.2.1 security update</title>
    <updated>2026-10-02T23:17:40.939600+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>apache-commons-fileupload: denial of service due to too-small buffer size used by MultipartStream</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2014:0252"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-0050</id>
    <title>Withdrawn: UBUNTU-CVE-2014-0050</title>
    <updated>2026-10-02T23:17:40.939627+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:14.04:LTS: tomcat7, Ubuntu:16.04:LTS: libcommons-fileupload-java</p>
<p>MultipartStream.java in Apache Commons FileUpload before 1.3.1, as used in Apache Tomcat, JBoss Web, and other products, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a crafted Content-Type header that bypasses a loop's intended exit conditions.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-0050"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0915</id>
    <title>WID-SEC-W-2026-0915 — Kyocera Drucker: Mehrere Schwachstellen</title>
    <updated>2026-10-02T23:17:40.939677+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer aus dem lokalen Netzwerk kann mehrere Schwachstellen in verschiedenen Modellen der Kyocera ECOSYS und TASKalfa Produktfamilien ausnutzen, um Dateien zu manipulieren oder einen Denial of Service Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0915"/>
  </entry>
</feed>
