<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:10:03.915765+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-06799</id>
    <title>cnvd-2015-06799</title>
    <updated>2026-10-03T09:10:03.929582+00:00</updated>
    <content>cnvd-2015-06799</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-06799"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-90611</id>
    <title>EUVD-2026-90611</title>
    <updated>2026-10-03T09:10:03.929627+00:00</updated>
    <content>EUVD-2026-90611</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-90611"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-1810</id>
    <title>fkie_cve-2015-1810</title>
    <updated>2026-10-03T09:10:03.929642+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The HudsonPrivateSecurityRealm class in Jenkins before 1.600 and LTS before 1.596.1 does not restrict access to reserved names when using the "Jenkins' own user database" setting, which allows remote attackers to gain privileges by creating a reserved name.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-1810"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-37wm-28rm-56vw</id>
    <title>GHSA-37wm-28rm-56vw — Jenkins does not Restrict Reserved Names Allowing for Privilege Escalation</title>
    <updated>2026-10-03T09:10:03.929674+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.main:jenkins-core</p>
<p>The HudsonPrivateSecurityRealm class in Jenkins before 1.600 and LTS before 1.596.1 does not restrict access to reserved names when using the "Jenkins' own user database" setting, which allows remote attackers to gain privileges by creating a reserved name.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-37wm-28rm-56vw"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-1810</id>
    <title>gsd-2015-1810</title>
    <updated>2026-10-03T09:10:03.929699+00:00</updated>
    <content>gsd-2015-1810</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-1810"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:1844</id>
    <title>RHSA-2015:1844 — Red Hat Security Advisory: Red Hat OpenShift Enterprise 2.2.7 security, bug fix and enhancement update</title>
    <updated>2026-10-03T09:10:03.929710+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jenkins: Combination filter Groovy script unsecured (SECURITY-125) jenkins: directory traversal from artifacts via symlink (SECURITY-162) jenkins: update center metadata retrieval DoS attack (SECURITY-163) jenkins: external entity injection via XPath (SECURITY-165) jenkins: HudsonPrivateSecurityRealm allows creation of reserved names (SECURITY-166) jenkins: External entity processing in XML can reveal sensitive local files (SECURITY-167) jenkins: Reflective XSS vulnerability (SECURITY-171, SECURITY-177) jenkins: Reflective XSS vulnerability (SECURITY-171, SECURITY-177) jenkins: forced API token change (SECURITY-180)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:1844"/>
  </entry>
</feed>
