<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:24:47.438247+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0276</id>
    <title>certfr-2023-avi-0276 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;IBM&lt;/span&gt;. Elles permettent à un attaquant d…</title>
    <updated>2026-10-03T09:24:47.446876+00:00</updated>
    <content>certfr-2023-avi-0276</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0276"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-12487</id>
    <title>cnvd-2018-12487</title>
    <updated>2026-10-03T09:24:47.446917+00:00</updated>
    <content>cnvd-2018-12487</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-12487"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-167954</id>
    <title>EUVD-2026-167954</title>
    <updated>2026-10-03T09:24:47.446932+00:00</updated>
    <content>EUVD-2026-167954</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-167954"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-8036</id>
    <title>fkie_cve-2018-8036</title>
    <updated>2026-10-03T09:24:47.446943+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-8036"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-j2xq-pfff-mvgg</id>
    <title>GHSA-j2xq-pfff-mvgg — Loop with Unreachable Exit Condition in Apache PDFBox</title>
    <updated>2026-10-03T09:24:47.446970+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.pdfbox:pdfbox</p>
<p>In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-j2xq-pfff-mvgg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-8036</id>
    <title>gsd-2018-8036</title>
    <updated>2026-10-03T09:24:47.446993+00:00</updated>
    <content>gsd-2018-8036</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-8036"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10622-1</id>
    <title>openSUSE-SU-2024:10622-1 — apache-pdfbox-2.0.23-1.3 on GA media</title>
    <updated>2026-10-03T09:24:47.447004+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>apache-pdfbox-2.0.23-1.3 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10622-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:2669</id>
    <title>RHSA-2018:2669 — Red Hat Security Advisory: Fuse 7.1 security update</title>
    <updated>2026-10-03T09:24:47.447020+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>1: Class Loader manipulation via request parameters thrift: Improper file path sanitization in t_go_generator.cc:format_go_output() of the go client library can allow an attacker to inject commands bouncycastle: DSA does not fully validate ASN.1 encoding during signature verification allowing for injection of unsigned data bouncycastle: Information leak in AESFastEngine class bouncycastle: Carry propagation bug in math.raw.Nat??? class bouncycastle: Information exposure in DSA signature generation via timing attack bouncycastle: ECDSA improper validation of ASN.1 encoding of signature bouncycastle: DSA key pair generator generates a weak private key by default bouncycastle: DHIES implementation allowed the use of ECB mode bouncycastle: DHIES/ECIES CBC modes are vulnerable to padding oracle attack bouncycastle: Other party DH public keys are not fully validated bouncycastle: ECIES implementation allowed the use of ECB mode async-http-client: Invalid URL parsing with '?' undertow: File descriptor leak caused by JarURLConnection.getLastModified() allows attacker to cause a denial of service spring-framework: Directory traversal vulnerability with static resources on Windows filesystems spring-framework: Multipart content pollution tika: Infinite loop in BPGParser can allow remote attacker to cause a denial of service tika: Infinite loop in ChmParser can allow remote attacker to cause a denial of service pdfbox: Infinite loop in AFMParser.java allows for out of memory erros via…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:2669"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:2630-1</id>
    <title>SUSE-SU-2018:2630-1 — Security update for apache-pdfbox</title>
    <updated>2026-10-03T09:24:47.447063+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for apache-pdfbox</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:2630-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-8036</id>
    <title>UBUNTU-CVE-2018-8036</title>
    <updated>2026-10-03T09:24:47.447117+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: libpdfbox-java, Ubuntu:18.04:LTS: libpdfbox-java, Ubuntu:18.04:LTS: libpdfbox2-java</p>
<p>In Apache PDFBox 1.8.0 to 1.8.14 and 2.0.0RC1 to 2.0.10, a carefully crafted (or fuzzed) file can trigger an infinite loop which leads to an out of memory exception in Apache PDFBox's AFMParser.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-8036"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0809</id>
    <title>WID-SEC-W-2023-0809 — IBM QRadar SIEM: Mehrere Schwachstellen</title>
    <updated>2026-10-03T09:24:47.447139+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM QRadar SIEM ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, Informationen falsch darzustellen, einen Denial of Service Zustand herbeizuführen, Sicherheitsvorkehrungen zu umgehen, einen Cross-Site-Scripting-Angriff durchzuführen oder unbekannte Auswirkungen zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0809"/>
  </entry>
</feed>
