<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T06:28:41.598577+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2015-avi-020</id>
    <title>certfr-2015-avi-020 — De multiples vulnérabilités ont été corrigées dans les produits &lt;span
class="textit"&gt;Mozilla&lt;/span&gt;. Certaines d'entre…</title>
    <updated>2026-10-03T06:28:41.713113+00:00</updated>
    <content>certfr-2015-avi-020</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2015-avi-020"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-00365</id>
    <title>cnvd-2015-00365</title>
    <updated>2026-10-03T06:28:41.713172+00:00</updated>
    <content>cnvd-2015-00365</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-00365"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-103419</id>
    <title>EUVD-2026-103419</title>
    <updated>2026-10-03T06:28:41.713188+00:00</updated>
    <content>EUVD-2026-103419</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-103419"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-8638</id>
    <title>fkie_cve-2014-8638</title>
    <updated>2026-10-03T06:28:41.713201+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-8638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-38xr-6jm2-v69w</id>
    <title>GHSA-38xr-6jm2-v69w</title>
    <updated>2026-10-03T06:28:41.713232+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-38xr-6jm2-v69w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-8638</id>
    <title>gsd-2014-8638</title>
    <updated>2026-10-03T06:28:41.713249+00:00</updated>
    <content>gsd-2014-8638</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-8638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</id>
    <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
    <updated>2026-10-03T06:28:41.713259+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>MozillaFirefox-50.1.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:0047</id>
    <title>RHSA-2015:0047 — Red Hat Security Advisory: thunderbird security update</title>
    <updated>2026-10-03T06:28:41.713739+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Mozilla: Miscellaneous memory safety hazards (rv:31.4) (MFSA 2015-01) Mozilla: sendBeacon requests lack an Origin header (MFSA 2015-03) Mozilla: Cookie injection through Proxy Authenticate responses (MFSA 2015-04)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:0047"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-8638</id>
    <title>UBUNTU-CVE-2014-8638</title>
    <updated>2026-10-03T06:28:41.713761+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: thunderbird</p>
<p>The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-8638"/>
  </entry>
</feed>
