<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:34:28.397803+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-23407</id>
    <title>cnvd-2020-23407</title>
    <updated>2026-10-03T05:34:28.515655+00:00</updated>
    <content>cnvd-2020-23407</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-23407"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-35648</id>
    <title>EUVD-2026-35648</title>
    <updated>2026-10-03T05:34:28.515733+00:00</updated>
    <content>EUVD-2026-35648</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-35648"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-1728</id>
    <title>fkie_cve-2020-1728</title>
    <updated>2026-10-03T05:34:28.515761+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was found in all versions of Keycloak where, the pages on the Admin Console area of the application are completely missing general HTTP security headers in HTTP-responses. This does not directly lead to a security issue, yet it might aid attackers in their efforts to exploit other problems. The flaws unnecessarily make the servers more prone to Clickjacking, channel downgrade attacks and other similar client-based attack vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-1728"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3gg7-9q2x-79fc</id>
    <title>GHSA-3gg7-9q2x-79fc — Improper Restriction of Rendered UI Layers or Frames in Keycloak</title>
    <updated>2026-10-03T05:34:28.515795+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.keycloak:keycloak-core</p>
<p>A vulnerability was found in all versions of Keycloak where, the pages on the Admin Console area of the application are completely missing general HTTP security headers in HTTP-responses. This does not directly lead to a security issue, yet it might aid attackers in their efforts to exploit other problems. The flaws unnecessarily make the servers more prone to Clickjacking, channel downgrade attacks and other similar client-based attack vectors.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3gg7-9q2x-79fc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-1728</id>
    <title>gsd-2020-1728</title>
    <updated>2026-10-03T05:34:28.515820+00:00</updated>
    <content>gsd-2020-1728</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-1728"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:3495</id>
    <title>RHSA-2020:3495 — Red Hat Security Advisory: Red Hat Single Sign-On 7.4.2 security update on RHEL 6</title>
    <updated>2026-10-03T05:34:28.515832+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>keycloak: security headers missing on REST endpoints keycloak: DoS by sending multiple simultaneous requests with a Content-Length header value greater than actual byte count of request body</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:3495"/>
  </entry>
</feed>
