<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T03:25:33.514316+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-03107</id>
    <title>bdu:2019-03107</title>
    <updated>2026-10-03T03:25:33.546666+00:00</updated>
    <content>bdu:2019-03107</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-03107"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-650</id>
    <title>certfr-2022-avi-650 — De multiples vulnérabilités ont été découvertes dans les produits
Juniper. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-03T03:25:33.546719+00:00</updated>
    <content>certfr-2022-avi-650</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-650"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-06262</id>
    <title>cnvd-2018-06262</title>
    <updated>2026-10-03T03:25:33.546740+00:00</updated>
    <content>cnvd-2018-06262</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-06262"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-63547</id>
    <title>EUVD-2026-63547</title>
    <updated>2026-10-03T03:25:33.546753+00:00</updated>
    <content>EUVD-2026-63547</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-63547"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-8088</id>
    <title>fkie_cve-2018-8088</title>
    <updated>2026-10-03T03:25:33.546764+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J versions 1.7.26 later and in the 2.0.x series.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-8088"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w77p-8cfg-2x43</id>
    <title>GHSA-w77p-8cfg-2x43 — Improper Access Control in SLF4J</title>
    <updated>2026-10-03T03:25:33.546793+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.slf4j:slf4j-ext</p>
<p>org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before `1.8.0-beta4` allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J version `1.7.26` and later and in the `2.0.x` series.</p>
<p>Note that while the [fix commit](https://github.com/qos-ch/slf4j/commit/d2b27fba88e983f921558da27fc29b5f5d269405) is associated with the tag `1.8.0-beta3`, the versions in [Maven](https://mvnrepository.com/artifact/org.slf4j/slf4j-ext) go directly from `1.8.0-beta2` to `1.8.0-beta4`.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w77p-8cfg-2x43"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-8088</id>
    <title>gsd-2018-8088</title>
    <updated>2026-10-03T03:25:33.546820+00:00</updated>
    <content>gsd-2018-8088</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-8088"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11386-1</id>
    <title>openSUSE-SU-2024:11386-1 — jcl-over-slf4j-1.7.30-2.5 on GA media</title>
    <updated>2026-10-03T03:25:33.546832+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jcl-over-slf4j-1.7.30-2.5 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:11386-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:0582</id>
    <title>RHSA-2018:0582 — Red Hat Security Advisory: rh-maven35-slf4j security update</title>
    <updated>2026-10-03T03:25:33.546850+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>slf4j: Deserialisation vulnerability in EventData constructor can allow for arbitrary code execution</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:0582"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:1744-1</id>
    <title>SUSE-SU-2018:1744-1 — Security update for slf4j</title>
    <updated>2026-10-03T03:25:33.546866+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for slf4j</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:1744-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-8088</id>
    <title>Withdrawn: UBUNTU-CVE-2018-8088</title>
    <updated>2026-10-03T03:25:33.546880+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:18.04:LTS: libslf4j-java</p>
<p>org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J versions 1.7.26 later and in the 2.0.x series.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-8088"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3225</id>
    <title>WID-SEC-W-2023-3225 — SLF4J: Schwachstelle ermöglicht Codeausführung</title>
    <updated>2026-10-03T03:25:33.546898+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in SLF4J ausnutzen, um beliebigen Programmcode auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3225"/>
  </entry>
</feed>
