<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:03:54.800377+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-00822</id>
    <title>bdu:2019-00822</title>
    <updated>2026-10-03T09:03:55.018888+00:00</updated>
    <content>bdu:2019-00822</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-00822"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</id>
    <title>certfr-2022-avi-591 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T09:03:55.018933+00:00</updated>
    <content>certfr-2022-avi-591</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-591"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-25306</id>
    <title>cnvd-2018-25306</title>
    <updated>2026-10-03T09:03:55.018988+00:00</updated>
    <content>cnvd-2018-25306</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-25306"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-71245</id>
    <title>EUVD-2026-71245</title>
    <updated>2026-10-03T09:03:55.019017+00:00</updated>
    <content>EUVD-2026-71245</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-71245"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1002105</id>
    <title>fkie_cve-2018-1002105</title>
    <updated>2026-10-03T09:03:55.019028+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-1002105"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-579h-mv94-g4gp</id>
    <title>GHSA-579h-mv94-g4gp — Privilege Escalation in Kubernetes</title>
    <updated>2026-10-03T09:03:55.019059+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/kubernetes/kubernetes</p>
<p>In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-579h-mv94-g4gp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-1002105</id>
    <title>gsd-2018-1002105</title>
    <updated>2026-10-03T09:03:55.019087+00:00</updated>
    <content>gsd-2018-1002105</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-1002105"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0554-1</id>
    <title>openSUSE-SU-2020:0554-1 — Security update for kubernetes</title>
    <updated>2026-10-03T09:03:55.019098+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for kubernetes</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:0554-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:2906</id>
    <title>RHSA-2018:2906 — Red Hat Security Advisory: OpenShift Container Platform 3.7 security update</title>
    <updated>2026-10-03T09:03:55.019119+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>atomic-openshift: oc patch with json causes masterapi service crash kubernetes: authentication/authorization bypass in the handling of non-101 responses</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:2906"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1002105</id>
    <title>Withdrawn: UBUNTU-CVE-2018-1002105</title>
    <updated>2026-10-03T09:03:55.019138+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:Pro:20.04:LTS: kubernetes, Ubuntu:22.04:LTS: kubernetes, Ubuntu:24.04:LTS: kubernetes</p>
<p>In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1002105"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</id>
    <title>WID-SEC-W-2022-0510 — IBM DB2: Mehrere Schwachstellen</title>
    <updated>2026-10-03T09:03:55.019162+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510"/>
  </entry>
</feed>
