<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T13:31:42.703648+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-17219</id>
    <title>cnvd-2017-17219</title>
    <updated>2026-10-07T13:31:42.707701+00:00</updated>
    <content>cnvd-2017-17219</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-17219"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-80783</id>
    <title>EUVD-2026-80783</title>
    <updated>2026-10-07T13:31:42.707740+00:00</updated>
    <content>EUVD-2026-80783</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-80783"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-1000096</id>
    <title>fkie_cve-2017-1000096</title>
    <updated>2026-10-07T13:31:42.707755+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Arbitrary code execution due to incomplete sandbox protection: Constructors, instance variable initializers, and instance initializers in Pipeline scripts were not subject to sandbox protection, and could therefore execute arbitrary code. This could be exploited e.g. by regular Jenkins users with the permission to configure Pipelines in Jenkins, or by trusted committers to repositories containing Jenkinsfiles.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-1000096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mhwq-4mh7-fv7c</id>
    <title>GHSA-mhwq-4mh7-fv7c — Arbitrary code execution due to incomplete sandbox protection in Jenkins Pipeline</title>
    <updated>2026-10-07T13:31:42.707795+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.plugins.workflow:workflow-cps</p>
<p>Arbitrary code execution due to incomplete sandbox protection: Constructors, instance variable initializers, and instance initializers in Pipeline scripts were not subject to sandbox protection, and could therefore execute arbitrary code. This could be exploited e.g. by regular Jenkins users with the permission to configure Pipelines in Jenkins, or by trusted committers to repositories containing Jenkinsfiles.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mhwq-4mh7-fv7c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-1000096</id>
    <title>gsd-2017-1000096</title>
    <updated>2026-10-07T13:31:42.707821+00:00</updated>
    <content>gsd-2017-1000096</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-1000096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2017:2642</id>
    <title>RHBA-2017:2642 — Red Hat Bug Fix Advisory: OpenShift Container Platform 3.6.1 bug fix and enhancement update</title>
    <updated>2026-10-07T13:31:42.707834+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jenkins-plugin-subversion: CSRF vulnerability and insufficient permission checks allow capturing credentials (SECURITY-303) jenkins-plugin-pipeline-build-step: Missing check of Item/Build permission (SECURITY-433) jenkins-plugin-git: CSRF vulnerability allows capturing credentials (SECURITY-528) jenkins-plugin-workflow-cps: Arbitrary code execution due to incomplete sandbox protection (SECURITY-551)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2017:2642"/>
  </entry>
</feed>
