<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T21:31:04.672500+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2018-avi-111</id>
    <title>certfr-2018-avi-111 — Une vulnérabilité a été découverte dans les produits Pivotal . Elle
permet à un attaquant de provoquer une exécution de…</title>
    <updated>2026-10-02T21:31:04.749183+00:00</updated>
    <content>certfr-2018-avi-111</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2018-avi-111"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-27968</id>
    <title>cnvd-2017-27968</title>
    <updated>2026-10-02T21:31:04.749224+00:00</updated>
    <content>cnvd-2017-27968</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-27968"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-75122</id>
    <title>EUVD-2026-75122</title>
    <updated>2026-10-02T21:31:04.749239+00:00</updated>
    <content>EUVD-2026-75122</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-75122"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-8046</id>
    <title>fkie_cve-2017-8046</title>
    <updated>2026-10-02T21:31:04.749250+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (Ingalls SR9), versions prior to 3.0.1 (Kay SR1) and Spring Boot versions prior to 1.5.9, 2.0 M6 can use specially crafted JSON data to run arbitrary Java code.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-8046"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9qf9-28h9-hqcj</id>
    <title>GHSA-9qf9-28h9-hqcj — Remote code execution in PATCH requests in Spring Data REST</title>
    <updated>2026-10-02T21:31:04.749280+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.springframework.data:spring-data-rest-core</p>
<p>Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (Ingalls SR9), versions prior to 3.0.1 (Kay SR1) can use specially crafted JSON data to run arbitrary Java code.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9qf9-28h9-hqcj"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-8046</id>
    <title>gsd-2017-8046</title>
    <updated>2026-10-02T21:31:04.749305+00:00</updated>
    <content>gsd-2017-8046</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-8046"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:2405</id>
    <title>RHSA-2018:2405 — Red Hat Security Advisory: Red Hat FIS 2.0 on Fuse 6.3.0 R7 security and bug fix update</title>
    <updated>2026-10-02T21:31:04.749316+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>spring-boot: Malicious PATCH requests submitted to servers can use specially crafted JSON data to run arbitrary Java code undertow: Client can use bogus uri in Digest authentication spring-framework: Improper URL path validation allows for bypassing of security checks on static resources ignite: Possible Execution of Arbitrary Code Within Deserialization Endpoints spark: Absolute and relative pathnames allow for unintended static file disclosure</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:2405"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0528</id>
    <title>WID-SEC-W-2024-0528 — Dell Data Protection Advisor: Mehrere Schwachstellen</title>
    <updated>2026-10-02T21:31:04.749337+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Code auszuführen, einen Denial-of-Service-Zustand herbeizuführen, Dateien zu manipulieren, vertrauliche Informationen offenzulegen, seine Berechtigungen zu erweitern oder einen nicht spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0528"/>
  </entry>
</feed>
