<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T04:22:07.595909+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-01721</id>
    <title>bdu:2022-01721</title>
    <updated>2026-10-03T04:22:07.960645+00:00</updated>
    <content>bdu:2022-01721</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-01721"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0003</id>
    <title>certfr-2025-avi-0003 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T04:22:07.960713+00:00</updated>
    <content>certfr-2025-avi-0003</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0003"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-11210</id>
    <title>EUVD-2026-11210</title>
    <updated>2026-10-03T04:22:07.960735+00:00</updated>
    <content>EUVD-2026-11210</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-11210"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-0759</id>
    <title>fkie_cve-2022-0759</title>
    <updated>2026-10-03T04:22:07.960747+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-0759"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-69p3-xp37-f692</id>
    <title>GHSA-69p3-xp37-f692 — Improper Certificate Validation in kubeclient</title>
    <updated>2026-10-03T04:22:07.960779+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> RubyGems: kubeclient</p>
<p>A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-69p3-xp37-f692"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-0759</id>
    <title>gsd-2022-0759</title>
    <updated>2026-10-03T04:22:07.960804+00:00</updated>
    <content>gsd-2022-0759</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-0759"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:1461</id>
    <title>RHSA-2022:1461 — Red Hat Security Advisory: Logging Subsystem 5.4 - Red Hat OpenShift Security and Bug update</title>
    <updated>2026-10-03T04:22:07.960815+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kubeclient: kubeconfig parsing error can lead to MITM attacks prometheus/client_golang: Denial of service using InstrumentHandlerCounter</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:1461"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0759</id>
    <title>UBUNTU-CVE-2022-0759</title>
    <updated>2026-10-03T04:22:07.960834+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: ruby-kubeclient, Ubuntu:20.04:LTS: ruby-kubeclient, Ubuntu:22.04:LTS: ruby-kubeclient, Ubuntu:24.04:LTS: ruby-kubeclient, Ubuntu:25.10: ruby-kubeclient, Ubuntu:26.04:LTS: ruby-kubeclient</p>
<p>A flaw was found in all versions of kubeclient up to (but not including) v4.9.3, the Ruby client for Kubernetes REST API, in the way it parsed kubeconfig files. When the kubeconfig file does not configure custom CA to verify certs, kubeclient ends up accepting any certificate (it wrongly returns VERIFY_NONE). Ruby applications that leverage kubeclient to parse kubeconfig files are susceptible to Man-in-the-middle attacks (MITM).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0759"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0069</id>
    <title>WID-SEC-W-2022-0069 — Red Hat OpenShift Logging Subsystem: Mehrere Schwachstellen</title>
    <updated>2026-10-03T04:22:07.960863+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat OpenShift Logging Subsystem ausnutzen, um Sicherheitsmechanismen zu umgehen und um einen Denial of Service Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0069"/>
  </entry>
</feed>
