<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T21:00:03.100187+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-09479</id>
    <title>cnvd-2016-09479</title>
    <updated>2026-10-02T21:00:03.226609+00:00</updated>
    <content>cnvd-2016-09479</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-09479"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-85193</id>
    <title>EUVD-2026-85193</title>
    <updated>2026-10-02T21:00:03.226656+00:00</updated>
    <content>EUVD-2026-85193</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-85193"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-5325</id>
    <title>fkie_cve-2016-5325</title>
    <updated>2026-10-02T21:00:03.226672+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 6.x before 6.7.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the reason argument.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-5325"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qpf8-fqrf-8p2h</id>
    <title>GHSA-qpf8-fqrf-8p2h</title>
    <updated>2026-10-02T21:00:03.226703+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 6.x before 6.7.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the reason argument.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qpf8-fqrf-8p2h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-5325</id>
    <title>gsd-2016-5325</title>
    <updated>2026-10-02T21:00:03.226720+00:00</updated>
    <content>gsd-2016-5325</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-5325"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10247-1</id>
    <title>openSUSE-SU-2024:10247-1 — nodejs4-4.7.0-1.1 on GA media</title>
    <updated>2026-10-02T21:00:03.226732+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nodejs4-4.7.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10247-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2016:2101</id>
    <title>RHSA-2016:2101 — Red Hat Security Advisory: nodejs and nodejs-tough-cookie security, bug fix, and enhancement update</title>
    <updated>2026-10-02T21:00:03.226754+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nodejs: reason argument in ServerResponse#writeHead() not properly validated nodejs-tough-cookie: regular expression DoS via Cookie header with many semicolons</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2016:2101"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2016:2470-1</id>
    <title>SUSE-SU-2016:2470-1 — Security update for nodejs4</title>
    <updated>2026-10-02T21:00:03.226773+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for nodejs4</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2016:2470-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-5325</id>
    <title>UBUNTU-CVE-2016-5325</title>
    <updated>2026-10-02T21:00:03.226792+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: nodejs, Ubuntu:16.04:LTS: nodejs</p>
<p>CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.12.16, 4.x before 4.6.0, and 6.x before 6.7.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the reason argument.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-5325"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3114</id>
    <title>WID-SEC-W-2026-3114 — Red Hat Enterprise Linux Server: Mehrere Schwachstellen</title>
    <updated>2026-10-02T21:00:03.226815+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux Server und Red Hat Enterprise Linux Workstation ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen, einen Denial of Service Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder falsche Informationen darzustellen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3114"/>
  </entry>
</feed>
