<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T23:46:46.822378+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-02827</id>
    <title>bdu:2022-02827</title>
    <updated>2026-10-03T23:46:47.426357+00:00</updated>
    <content>bdu:2022-02827</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-02827"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-21643</id>
    <title>EUVD-2026-21643</title>
    <updated>2026-10-03T23:46:47.426444+00:00</updated>
    <content>EUVD-2026-21643</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-21643"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-20289</id>
    <title>fkie_cve-2021-20289</title>
    <updated>2026-10-03T23:46:47.426461+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final. The endpoint class and method names are returned as part of the exception response when RESTEasy cannot convert one of the request URI path or query values to the matching JAX-RS resource method's parameter value. The highest threat from this vulnerability is to data confidentiality.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-20289"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-244r-fcj3-ghjq</id>
    <title>GHSA-244r-fcj3-ghjq — Exposure of class information in RESTEasy</title>
    <updated>2026-10-03T23:46:47.426497+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jboss.resteasy:resteasy-core</p>
<p>A flaw was found in RESTEasy in all current versions of RESTEasy up to 4.6.0.Final. The endpoint class and method names are returned as part of the exception response when RESTEasy cannot convert one of the request URI path or query values to the matching JAX-RS resource method's parameter value. The highest threat from this vulnerability is to data confidentiality.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-244r-fcj3-ghjq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-20289</id>
    <title>gsd-2021-20289</title>
    <updated>2026-10-03T23:46:47.426529+00:00</updated>
    <content>gsd-2021-20289</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-20289"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1171</id>
    <title>OESA-2021-1171 — resteasy security update</title>
    <updated>2026-10-03T23:46:47.426541+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: resteasy</p>
<p>%global desc \ RESTEasy contains a JBoss project that provides frameworks to help\ build RESTful Web Services and RESTful Java applications. It is a fully\ certified and portable implementation of the JAX-RS specification. %{desc} %global extdesc %{desc}\ \ This package contains

Security Fix(es):

A flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final. The endpoint class and method names are returned as part of the exception response when RESTEasy cannot convert one of the request URI path or query values to the matching JAX-RS resource method&amp;apos;s parameter value. The highest threat from this vulnerability is to data confidentiality.(CVE-2021-20289)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1171"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3700</id>
    <title>RHSA-2021:3700 — Red Hat Security Advisory: Red Hat AMQ Broker 7.9.0 release and security update</title>
    <updated>2026-10-03T23:46:47.426565+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>apache-httpclient: incorrect handling of malformed authority component in request URIs jetty: request containing multiple Accept headers with a large number of "quality" parameters may lead to DoS Broker: discloses JDBC username and password in the application log file 7: Incorrect privilege in Management Console resteasy: Error message exposes endpoint class information netty: Information disclosure via the local system temporary directory netty: possible request smuggling in HTTP/2 due missing validation netty: Request smuggling via content-length header jetty: Symlink directory exposes webapp directory contents jetty: Ambiguous paths can access WEB-INF jetty: Resource exhaustion when receiving an invalid large TLS frame jetty: requests to the ConcatServlet and WelcomeFilter are able to access protected resources within the WEB-INF directory apache-commons-io: Limited path traversal in Apache Commons IO 2.2 to 2.6 jetty: SessionListener can prevent a session from being invalidated breaking logout jetty: crafted URIs allow bypassing security constraints</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3700"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-20289</id>
    <title>UBUNTU-CVE-2021-20289</title>
    <updated>2026-10-03T23:46:47.426625+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: resteasy, Ubuntu:Pro:18.04:LTS: resteasy3.0, Ubuntu:Pro:20.04:LTS: resteasy, Ubuntu:Pro:20.04:LTS: resteasy3.0, Ubuntu:22.04:LTS: resteasy3.0, Ubuntu:Pro:22.04:LTS: resteasy, Ubuntu:24.04:LTS: resteasy3.0, Ubuntu:Pro:24.04:LTS: resteasy, Ubuntu:25.10: resteasy, Ubuntu:25.10: resteasy3.0 and 2 more</p>
<p>A flaw was found in RESTEasy in all versions of RESTEasy up to 4.6.0.Final. The endpoint class and method names are returned as part of the exception response when RESTEasy cannot convert one of the request URI path or query values to the matching JAX-RS resource method's parameter value. The highest threat from this vulnerability is to data confidentiality.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-20289"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1366</id>
    <title>WID-SEC-W-2022-1366 — Red Hat Integration - Service Registry: Mehrere Schwachstellen</title>
    <updated>2026-10-03T23:46:47.426668+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Integration - Service Registry ausnutzen, um Informationen offenzulegen und einen Cross Site Scripting Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1366"/>
  </entry>
</feed>
