<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T18:56:07.721209+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2016-00402</id>
    <title>bdu:2016-00402</title>
    <updated>2026-10-02T18:56:07.785412+00:00</updated>
    <content>bdu:2016-00402</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2016-00402"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-00767</id>
    <title>cnvd-2016-00767</title>
    <updated>2026-10-02T18:56:07.785460+00:00</updated>
    <content>cnvd-2016-00767</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-00767"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-82297</id>
    <title>EUVD-2026-82297</title>
    <updated>2026-10-02T18:56:07.785477+00:00</updated>
    <content>EUVD-2026-82297</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-82297"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-1617</id>
    <title>fkie_cve-2016-1617</title>
    <updated>2026-10-02T18:56:07.785489+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CSPSource::schemeMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 48.0.2564.82, does not apply http policies to https URLs and does not apply ws policies to wss URLs, which makes it easier for remote attackers to determine whether a specific HSTS web site has been visited by reading a CSP report.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-1617"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wgvw-9qxr-cvw2</id>
    <title>GHSA-wgvw-9qxr-cvw2</title>
    <updated>2026-10-02T18:56:07.785519+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The CSPSource::schemeMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 48.0.2564.82, does not apply http policies to https URLs and does not apply ws policies to wss URLs, which makes it easier for remote attackers to determine whether a specific HSTS web site has been visited by reading a CSP report.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wgvw-9qxr-cvw2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-1617</id>
    <title>gsd-2016-1617</title>
    <updated>2026-10-02T18:56:07.785537+00:00</updated>
    <content>gsd-2016-1617</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-1617"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10171-1</id>
    <title>openSUSE-SU-2024:10171-1 — chromedriver-55.0.2883.75-3.1 on GA media</title>
    <updated>2026-10-02T18:56:07.785548+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>chromedriver-55.0.2883.75-3.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10171-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2016:0072</id>
    <title>RHSA-2016:0072 — Red Hat Security Advisory: chromium-browser security update</title>
    <updated>2026-10-02T18:56:07.785906+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>chromium-browser: Multiple unspecified vulnerabilities in HarfBuzz before 1.0.6 chromium-browser: bad cast in V8 chromium-browser: use-after-free in PDFium chromium-browser: information leak in Blink chromium-browser: origin confusion in Omnibox chromium-browser: various fixes from internal audits chromium-browser: various fixes from internal audits chromium-browser: weak random number generator in Blink chromium-browser: out-of-bounds read in PDFium chromium-browser: various fixes from internal audits chromium-browser: Multiple unspecified vulnerabilities in Google V8 before 4.8.271.17 chromium-browser: Multiple unspecified vulnerabilities in HarfBuzz before 1.0.6</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2016:0072"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1617</id>
    <title>UBUNTU-CVE-2016-1617</title>
    <updated>2026-10-02T18:56:07.785937+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: chromium-browser, Ubuntu:14.04:LTS: oxide-qt</p>
<p>The CSPSource::schemeMatches function in WebKit/Source/core/frame/csp/CSPSource.cpp in the Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 48.0.2564.82, does not apply http policies to https URLs and does not apply ws policies to wss URLs, which makes it easier for remote attackers to determine whether a specific HSTS web site has been visited by reading a CSP report.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-1617"/>
  </entry>
</feed>
