<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T14:41:45.591844+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-03489</id>
    <title>bdu:2021-03489</title>
    <updated>2026-10-06T14:41:45.608371+00:00</updated>
    <content>bdu:2021-03489</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-03489"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0903</id>
    <title>certfr-2024-avi-0903 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-06T14:41:45.608408+00:00</updated>
    <content>certfr-2024-avi-0903</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0903"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-259073</id>
    <title>EUVD-2026-259073</title>
    <updated>2026-10-06T14:41:45.608428+00:00</updated>
    <content>EUVD-2026-259073</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-259073"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1311</id>
    <title>fkie_cve-2018-1311</title>
    <updated>2026-10-06T14:41:45.608441+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disable DTD processing. This can be accomplished via the DOM using a standard parser feature, or via SAX using the XERCES_DISABLE_DTD environment variable.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-1311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7rpp-hwhj-9hv8</id>
    <title>GHSA-7rpp-hwhj-9hv8</title>
    <updated>2026-10-06T14:41:45.608470+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Apache Xerces-C 3.0.0 to 3.2.2 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disable DTD processing. This can be accomplished via the DOM using a standard parser feature, or via SAX using the XERCES_DISABLE_DTD environment variable.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7rpp-hwhj-9hv8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-1311</id>
    <title>gsd-2018-1311</title>
    <updated>2026-10-06T14:41:45.608487+00:00</updated>
    <content>gsd-2018-1311</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-1311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2018-1311</id>
    <title>msrc_CVE-2018-1311 — The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external…</title>
    <updated>2026-10-06T14:41:45.608498+00:00</updated>
    <content>msrc_CVE-2018-1311</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2018-1311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-1160</id>
    <title>OESA-2024-1160 — xerces-c security update</title>
    <updated>2026-10-06T14:41:45.608520+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP4: xerces-c</p>
<p>Xerces-C is a validating XML parser written in a portable subset of C++. Xerces-C makes it easy to give your application the ability to read and write XML data. A shared library is provided for parsing, generating, manipulating, and validating XML documents. Xerces-C is faithful to the XML 1.0 recommendation and associated standards ( DOM 1.0, DOM 2.0. SAX 1.0, SAX 2.0, Namespaces).

Security Fix(es):

The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disable DTD processing. This can be accomplished via the DOM using a standard parser feature, or via SAX using the XERCES_DISABLE_DTD environment variable.(CVE-2018-1311)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-1160"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1231-1</id>
    <title>openSUSE-SU-2021:1231-1 — Security update for xerces-c</title>
    <updated>2026-10-06T14:41:45.608545+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xerces-c</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:1231-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:0702</id>
    <title>RHSA-2020:0702 — Red Hat Security Advisory: xerces-c security update</title>
    <updated>2026-10-06T14:41:45.608560+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>xerces-c: XML parser contains a use-after-free error triggered during the scanning of external DTDs</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:0702"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:2920-1</id>
    <title>SUSE-SU-2021:2920-1 — Security update for xerces-c</title>
    <updated>2026-10-06T14:41:45.608574+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xerces-c</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:2920-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1311</id>
    <title>UBUNTU-CVE-2018-1311</title>
    <updated>2026-10-06T14:41:45.608587+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: xerces-c, Ubuntu:Pro:16.04:LTS: xerces-c, Ubuntu:Pro:18.04:LTS: xerces-c, Ubuntu:20.04:LTS: xerces-c, Ubuntu:22.04:LTS: xerces-c, Ubuntu:Pro:22.04:LTS: xerces-c</p>
<p>The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disable DTD processing. This can be accomplished via the DOM using a standard parser feature, or via SAX using the XERCES_DISABLE_DTD environment variable.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1034</id>
    <title>WID-SEC-W-2023-1034 — Oracle JD Edwards: Mehrere Schwachstellen</title>
    <updated>2026-10-06T14:41:45.608612+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in Oracle JD Edwards ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1034"/>
  </entry>
</feed>
