<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:15:17.376239+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2017-avi-370</id>
    <title>certfr-2017-avi-370 — De multiples vulnérabilités ont été découvertes dans Oracle Database
Server. Elles permettent à un attaquant de provoqu…</title>
    <updated>2026-10-02T23:15:17.384066+00:00</updated>
    <content>certfr-2017-avi-370</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2017-avi-370"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-00746</id>
    <title>cnvd-2017-00746</title>
    <updated>2026-10-02T23:15:17.384106+00:00</updated>
    <content>cnvd-2017-00746</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-00746"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-172615</id>
    <title>EUVD-2026-172615</title>
    <updated>2026-10-02T23:15:17.384121+00:00</updated>
    <content>EUVD-2026-172615</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-172615"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-6814</id>
    <title>fkie_cve-2016-6814</title>
    <updated>2026-10-02T23:15:17.384132+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-6814"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xphj-m9cc-8fmq</id>
    <title>GHSA-xphj-m9cc-8fmq — Deserialization of Untrusted Data in Groovy</title>
    <updated>2026-10-02T23:15:17.384162+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.codehaus.groovy:groovy, Maven: org.codehaus.groovy:groovy-all</p>
<p>When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xphj-m9cc-8fmq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-6814</id>
    <title>gsd-2016-6814</title>
    <updated>2026-10-02T23:15:17.384188+00:00</updated>
    <content>gsd-2016-6814</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-6814"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:0272</id>
    <title>RHSA-2017:0272 — Red Hat Security Advisory: Red Hat JBoss Data Virtualization security and bug fix update</title>
    <updated>2026-10-02T23:15:17.384200+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pdfbox: XML External Entity vulnerability tika: XML External Entity vulnerability Groovy: Remote code execution via deserialization</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:0272"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:2486</id>
    <title>RHSA-2017:2486 — Red Hat Security Advisory: groovy security update</title>
    <updated>2026-10-02T23:15:17.384218+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>groovy: remote execution of untrusted code in class MethodClosure Groovy: Remote code execution via deserialization</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:2486"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6814</id>
    <title>UBUNTU-CVE-2016-6814</title>
    <updated>2026-10-02T23:15:17.384233+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: groovy2, Ubuntu:16.04:LTS: groovy</p>
<p>When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6814"/>
  </entry>
</feed>
