<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:19:16.143315+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2016-01714</id>
    <title>bdu:2016-01714</title>
    <updated>2026-10-03T00:19:16.150791+00:00</updated>
    <content>bdu:2016-01714</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2016-01714"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-1100</id>
    <title>certfr-2025-avi-1100 — De multiples vulnérabilités ont été découvertes dans les produits Atlassian. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T00:19:16.150822+00:00</updated>
    <content>certfr-2025-avi-1100</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-1100"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-03936</id>
    <title>cnvd-2016-03936</title>
    <updated>2026-10-03T00:19:16.150840+00:00</updated>
    <content>cnvd-2016-03936</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-03936"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-81952</id>
    <title>EUVD-2026-81952</title>
    <updated>2026-10-03T00:19:16.150852+00:00</updated>
    <content>EUVD-2026-81952</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-81952"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-1181</id>
    <title>fkie_cve-2016-1181</title>
    <updated>2026-10-03T00:19:16.150862+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ActionServlet.java in Apache Struts 1 1.x through 1.3.10 mishandles multithreaded access to an ActionForm instance, which allows remote attackers to execute arbitrary code or cause a denial of service (unexpected memory access) via a multipart request, a related issue to CVE-2015-0899.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-1181"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7jw3-5q4w-89qg</id>
    <title>GHSA-7jw3-5q4w-89qg — Improper Input Validation in Apache Struts</title>
    <updated>2026-10-03T00:19:16.150887+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.struts:struts-core, Maven: struts:struts</p>
<p>ActionServlet.java in Apache Struts 1 1.x through 1.3.10 mishandles multithreaded access to an ActionForm instance, which allows remote attackers to execute arbitrary code or cause a denial of service (unexpected memory access) via a multipart request, a related issue to CVE-2015-0899.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7jw3-5q4w-89qg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-1181</id>
    <title>gsd-2016-1181</title>
    <updated>2026-10-03T00:19:16.150910+00:00</updated>
    <content>gsd-2016-1181</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-1181"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsma-20-184-01</id>
    <title>ICSMA-20-184-01 — OpenClinic GA (Update B)</title>
    <updated>2026-10-03T00:19:16.150921+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker may bypass client-side access controls or use a crafted request to initiate a session with limited functionality, which may allow execution of admin functions such as SQL queries.CVE-2020-14485 has been assigned to this vulnerability. A CVSS v3 base score of 9.4 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L). An attacker can bypass the system 's account lockout protection, which may allow brute force password attacks.CVE-2020-14484 has been assigned to this vulnerability. A CVSS v3 base score of 7.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L). An authentication mechanism within the system does not contain sufficient complexity to protect against brute force attacks, which may allow unauthorized users to access the system after no more than a fixed maximum number of attempts.CVE-2020-14494 has been assigned to this vulnerability. A CVSS v3 base score of 7.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L). The system does not properly check permissions before executing SQL queries, which may allow a low-privilege user to access privileged information.CVE-2020-14491 has been assigned to this vulnerability. A CVSS v3 base score of 8.3 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L). A low-privilege user may use SQL syntax to write arbitrary files to the server, which may allow the execution of arbitrary commands.CVE-…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsma-20-184-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2016-000096</id>
    <title>jvndb-2016-000096</title>
    <updated>2026-10-03T00:19:16.150963+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Apache Sturts 1 ActionForm contains a vulnerability which allows unintended remote operations against components on server memory, such as Servlets and ClassLoader, when the following 2 conditions are met:

Condition 1:
When the following ActionForm (including its subclasses) are in the session scope, and multiple threads that process the same session can access the same ActionForm instance
* ActionForm (not including claesses that implement DynaBean interface, such as DynaActionForm and its subclasses)
* ValidatingActionForm
* ValidatorForm
* ValidatorActionForm

Condition 2:
Can process multi-part requests
(This condition applies whether or not the web application uses multi-part forms)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2016-000096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1277</id>
    <title>WID-SEC-W-2024-1277 — Oracle Fusion Middleware: Mehrere Schwachstellen</title>
    <updated>2026-10-03T00:19:16.150983+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1277"/>
  </entry>
</feed>
