<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T17:26:24.174130+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</id>
    <title>certfr-2022-avi-591 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T17:26:24.332778+00:00</updated>
    <content>certfr-2022-avi-591</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-591"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-ay16638</id>
    <title>CLEANSTART-2026-AY16638 — Security fix for CVE-2020-8565 applied in: cluster-proportional-autoscaler 1.7.1-r0, gostatsd 28.3.0-r2</title>
    <updated>2026-10-02T17:26:24.332819+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: cluster-proportional-autoscaler, CleanStart: gostatsd</p>
<p>CVE-2020-8565 affects multiple packages. This issue is resolved in later releases. See references for individual vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-ay16638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-65159</id>
    <title>cnvd-2020-65159</title>
    <updated>2026-10-02T17:26:24.332853+00:00</updated>
    <content>cnvd-2020-65159</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-65159"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-177317</id>
    <title>EUVD-2026-177317</title>
    <updated>2026-10-02T17:26:24.332868+00:00</updated>
    <content>EUVD-2026-177317</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-177317"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-8565</id>
    <title>fkie_cve-2020-8565</title>
    <updated>2026-10-02T17:26:24.332880+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &lt;= v1.19.3, &lt;= v1.18.10, &lt;= v1.17.13, &lt; v1.20.0-alpha2.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-8565"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8cfg-vx93-jvxw</id>
    <title>GHSA-8cfg-vx93-jvxw — Kubernetes client-go vulnerable to Sensitive Information Leak via Log File</title>
    <updated>2026-10-02T17:26:24.332902+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: k8s.io/client-go, Go: k8s.io/kubernetes</p>
<p>In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &lt;= v1.19.5, &lt;= v1.18.13, &lt;= v1.17.15, &lt; v1.20.0-alpha2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8cfg-vx93-jvxw"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-8565</id>
    <title>gsd-2020-8565</title>
    <updated>2026-10-02T17:26:24.332927+00:00</updated>
    <content>gsd-2020-8565</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-8565"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2020-8565</id>
    <title>msrc_CVE-2020-8565 — Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &gt;= 9</title>
    <updated>2026-10-02T17:26:24.332938+00:00</updated>
    <content>msrc_CVE-2020-8565</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2020-8565"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2021:3003</id>
    <title>RHBA-2021:3003 — Red Hat Bug Fix Advisory: Red Hat OpenShift Container Storage 4.8.0 container images bug fix and enhancement update</title>
    <updated>2026-10-02T17:26:24.332953+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kubernetes: Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &gt;= 9 noobaa-core: Cross-site scripting vulnerability with noobaa management URL golang: encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2021:3003"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1</id>
    <title>SUSE-SU-2020:3760-1 — Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package</title>
    <updated>2026-10-02T17:26:24.332973+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8565</id>
    <title>Withdrawn: UBUNTU-CVE-2020-8565</title>
    <updated>2026-10-02T17:26:24.332990+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:Pro:20.04:LTS: kubernetes, Ubuntu:22.04:LTS: kubernetes, Ubuntu:24.04:LTS: kubernetes</p>
<p>In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &lt;= v1.19.3, &lt;= v1.18.10, &lt;= v1.17.13, &lt; v1.20.0-alpha2.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8565"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</id>
    <title>WID-SEC-W-2022-0510 — IBM DB2: Mehrere Schwachstellen</title>
    <updated>2026-10-02T17:26:24.333012+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510"/>
  </entry>
</feed>
