<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T19:31:56.862744+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:2129</id>
    <title>ALSA-2022:2129 — Moderate: lynx security update</title>
    <updated>2026-10-08T19:31:56.876006+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: lynx</p>
<p>Lynx is a text-based Web browser. Lynx does not display any images, but it does support frames, tables, and most other HTML tags.</p>
<p>Security Fix(es):</p>
<p>* lynx: Disclosure of HTTP authentication credentials via SNI data (CVE-2021-38165)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:2129"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-00255</id>
    <title>bdu:2022-00255</title>
    <updated>2026-10-08T19:31:56.876069+00:00</updated>
    <content>bdu:2022-00255</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-00255"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-30202</id>
    <title>EUVD-2026-30202</title>
    <updated>2026-10-08T19:31:56.876086+00:00</updated>
    <content>EUVD-2026-30202</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-30202"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-38165</id>
    <title>fkie_cve-2021-38165</title>
    <updated>2026-10-08T19:31:56.876100+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-38165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-88f3-hp86-v36f</id>
    <title>GHSA-88f3-hp86-v36f</title>
    <updated>2026-10-08T19:31:56.876122+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-88f3-hp86-v36f"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-38165</id>
    <title>gsd-2021-38165</title>
    <updated>2026-10-08T19:31:56.876136+00:00</updated>
    <content>gsd-2021-38165</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-38165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1326</id>
    <title>OESA-2021-1326 — lynx security update</title>
    <updated>2026-10-08T19:31:56.876147+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: lynx, openEuler:20.03-LTS-SP2: lynx</p>
<p>Lynx is a fully-featured World Wide Web (WWW) client for users running cursor-addressable, character-cell display devices such as vt100 terminals, vt100 emulators running on Windows 95/NT or Macintoshes, or any other character-cell display.  It will display Hypertext Markup Language (HTML) documents containing links to files on the local system, as well as files on remote systems running http, gopher, ftp, wais, nntp, finger, or cso/ph/qi servers, and services accessible via logins to telnet, tn3270 or rlogin accounts.  Current versions of Lynx run on Unix, VMS, Windows95 through Windows 8, 386DOS and OS/2 EMX.

Security Fix(es):

Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.(CVE-2021-38165)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1326"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:2129</id>
    <title>RHSA-2022:2129 — Red Hat Security Advisory: lynx security update</title>
    <updated>2026-10-08T19:31:56.876173+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>lynx: Disclosure of HTTP authentication credentials via SNI data</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:2129"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2022:2129</id>
    <title>RLSA-2022:2129 — Moderate: lynx security update</title>
    <updated>2026-10-08T19:31:56.876189+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:8: lynx</p>
<p>Lynx is a text-based Web browser. Lynx does not display any images, but it does support frames, tables, and most other HTML tags.</p>
<p>Security Fix(es):</p>
<p>* lynx: Disclosure of HTTP authentication credentials via SNI data (CVE-2021-38165)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the Rocky Linux 8.6 Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2022:2129"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-38165</id>
    <title>UBUNTU-CVE-2021-38165</title>
    <updated>2026-10-08T19:31:56.876213+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: lynx, Ubuntu:Pro:18.04:LTS: lynx, Ubuntu:Pro:20.04:LTS: lynx</p>
<p>Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which allows remote attackers to discover cleartext credentials because they may appear in SNI data.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-38165"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1822</id>
    <title>WID-SEC-W-2023-1822 — Lynx: Schwachstelle ermöglicht Offenlegung von Informationen</title>
    <updated>2026-10-08T19:31:56.876233+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Lynx ausnutzen, um Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1822"/>
  </entry>
</feed>
