<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T20:56:33.769674+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-03242</id>
    <title>bdu:2021-03242</title>
    <updated>2026-10-04T20:56:33.927846+00:00</updated>
    <content>bdu:2021-03242</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-03242"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-943</id>
    <title>certfr-2021-avi-943 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-04T20:56:33.927884+00:00</updated>
    <content>certfr-2021-avi-943</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-943"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-26197</id>
    <title>EUVD-2026-26197</title>
    <updated>2026-10-04T20:56:33.927903+00:00</updated>
    <content>EUVD-2026-26197</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-26197"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-29060</id>
    <title>fkie_cve-2021-29060</title>
    <updated>2026-10-04T20:56:33.927916+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Color-String version 1.5.5 and below which occurs when the application is provided and checks a crafted invalid HWB string.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-29060"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-257v-vj4p-3w2h</id>
    <title>GHSA-257v-vj4p-3w2h — Regular Expression Denial of Service (ReDOS)</title>
    <updated>2026-10-04T20:56:33.927944+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: color-string</p>
<p>In the npm package `color-string`, there is a  ReDos (Regular Expression Denial of Service) vulnerability regarding an exponential time complexity for
linearly increasing input lengths for `hwb()` color strings.</p>
<p>Strings reaching more than 5000 characters would see several
milliseconds of processing time; strings reaching more than
50,000 characters began seeing 1500ms (1.5s) of processing time.</p>
<p>The cause was due to a the regular expression that parses
hwb() strings - specifically, the hue value - where
the integer portion of the hue value used a 0-or-more quantifier
shortly thereafter followed by a 1-or-more quantifier.</p>
<p>This caused excessive backtracking and a cartesian scan,
resulting in exponential time complexity given a linear
increase in input length.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-257v-vj4p-3w2h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-29060</id>
    <title>gsd-2021-29060</title>
    <updated>2026-10-04T20:56:33.927974+00:00</updated>
    <content>gsd-2021-29060</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-29060"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-29060</id>
    <title>UBUNTU-CVE-2021-29060</title>
    <updated>2026-10-04T20:56:33.927985+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: node-color-string, Ubuntu:20.04:LTS: node-color-string, Ubuntu:22.04:LTS: node-color-string, Ubuntu:24.04:LTS: node-color-string, Ubuntu:25.10: node-color-string, Ubuntu:26.04:LTS: node-color-string</p>
<p>A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Color-String version 1.5.5 and below which occurs when the application is provided and checks a crafted invalid HWB string.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-29060"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0809</id>
    <title>WID-SEC-W-2023-0809 — IBM QRadar SIEM: Mehrere Schwachstellen</title>
    <updated>2026-10-04T20:56:33.928011+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM QRadar SIEM ausnutzen, um beliebigen Programmcode auszuführen, Informationen offenzulegen, Informationen falsch darzustellen, einen Denial of Service Zustand herbeizuführen, Sicherheitsvorkehrungen zu umgehen, einen Cross-Site-Scripting-Angriff durchzuführen oder unbekannte Auswirkungen zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0809"/>
  </entry>
</feed>
