<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T06:02:22.099041+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-03819</id>
    <title>cnvd-2016-03819</title>
    <updated>2026-10-03T06:02:22.235678+00:00</updated>
    <content>cnvd-2016-03819</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-03819"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-84408</id>
    <title>EUVD-2026-84408</title>
    <updated>2026-10-03T06:02:22.235737+00:00</updated>
    <content>EUVD-2026-84408</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-84408"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-4434</id>
    <title>fkie_cve-2016-4434</title>
    <updated>2026-10-03T06:02:22.235752+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Apache Tika before 1.13 does not properly initialize the XML parser or choose handlers, which might allow remote attackers to conduct XML External Entity (XXE) attacks via vectors involving (1) spreadsheets in OOXML files and (2) XMP metadata in PDF and other file formats, a related issue to CVE-2016-2175.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-4434"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4xr4-4c65-hj7f</id>
    <title>GHSA-4xr4-4c65-hj7f — Apache Tika does not properly initialize the XML parser or choose handlers</title>
    <updated>2026-10-03T06:02:22.235784+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.tika:tika-core</p>
<p>Apache Tika before 1.13 does not properly initialize the XML parser or choose handlers, which might allow remote attackers to conduct XML External Entity (XXE) attacks via vectors involving (1) spreadsheets in OOXML files and (2) XMP metadata in PDF and other file formats, a related issue to CVE-2016-2175.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4xr4-4c65-hj7f"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-4434</id>
    <title>gsd-2016-4434</title>
    <updated>2026-10-03T06:02:22.235809+00:00</updated>
    <content>gsd-2016-4434</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-4434"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:0248</id>
    <title>RHSA-2017:0248 — Red Hat Security Advisory: Red Hat JBoss BRMS security update</title>
    <updated>2026-10-03T06:02:22.235821+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pdfbox: XML External Entity vulnerability tika: XML External Entity vulnerability JBoss bpms 6.3.x cookie does not set httponly</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:0248"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-4434</id>
    <title>UBUNTU-CVE-2016-4434</title>
    <updated>2026-10-03T06:02:22.235842+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: tika, Ubuntu:18.04:LTS: tika</p>
<p>Apache Tika before 1.13 does not properly initialize the XML parser or choose handlers, which might allow remote attackers to conduct XML External Entity (XXE) attacks via vectors involving (1) spreadsheets in OOXML files and (2) XMP metadata in PDF and other file formats, a related issue to CVE-2016-2175.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-4434"/>
  </entry>
</feed>
