<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:49:30.206955+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-11250</id>
    <title>bdu:2025-11250</title>
    <updated>2026-10-03T13:49:30.444305+00:00</updated>
    <content>bdu:2025-11250</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-11250"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-350</id>
    <title>certfr-2020-avi-350 — De multiples vulnérabilités ont été découvertes dans les produits SAP.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T13:49:30.444354+00:00</updated>
    <content>certfr-2020-avi-350</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-350"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-71224</id>
    <title>EUVD-2026-71224</title>
    <updated>2026-10-03T13:49:30.444374+00:00</updated>
    <content>EUVD-2026-71224</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-71224"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000632</id>
    <title>fkie_cve-2018-1000632</title>
    <updated>2026-10-03T13:49:30.444387+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000632"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6pcc-3rfx-4gpm</id>
    <title>GHSA-6pcc-3rfx-4gpm — Dom4j contains a XML Injection vulnerability</title>
    <updated>2026-10-03T13:49:30.444417+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.dom4j:dom4j, Maven: dom4j:dom4j</p>
<p>dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.</p>
<p>Note: This advisory applies to `dom4j:dom4j` version 1.x legacy artifacts.  To resolve this a change to the latest version of `org.dom4j:dom4j` is recommended.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6pcc-3rfx-4gpm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-1000632</id>
    <title>gsd-2018-1000632</title>
    <updated>2026-10-03T13:49:30.444447+00:00</updated>
    <content>gsd-2018-1000632</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-1000632"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2018:4045-1</id>
    <title>openSUSE-SU-2018:4045-1 — Security update for dom4j</title>
    <updated>2026-10-03T13:49:30.444459+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for dom4j</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2018:4045-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhea-2019:1119</id>
    <title>RHEA-2019:1119 — Red Hat Enhancement Advisory: rhvm-appliance security, bug fix, and enhancement update</title>
    <updated>2026-10-03T13:49:30.444476+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>undertow: Infoleak in some circumstances where Undertow can serve data from a random buffer dom4j: XML Injection in Class: Element. Methods: addElement, addAttribute which can impact the integrity of XML documents</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhea-2019:1119"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:2861-1</id>
    <title>SUSE-SU-2018:2861-1 — Security update for dom4j</title>
    <updated>2026-10-03T13:49:30.444493+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for dom4j</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:2861-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1000632</id>
    <title>UBUNTU-CVE-2018-1000632</title>
    <updated>2026-10-03T13:49:30.444507+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: dom4j, Ubuntu:16.04:LTS: dom4j, Ubuntu:18.04:LTS: dom4j</p>
<p>dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be exploitable via an attacker specifying attributes or elements in the XML document. This vulnerability appears to have been fixed in 2.1.1 or later.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1000632"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0068</id>
    <title>WID-SEC-W-2024-0068 — IBM Business Automation Workflow: Mehrere Schwachstellen</title>
    <updated>2026-10-03T13:49:30.444528+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM Business Automation Workflow ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen oder Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0068"/>
  </entry>
</feed>
