<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T03:42:02.450422+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:1777</id>
    <title>ALSA-2022:1777 — Moderate: webkit2gtk3 security, bug fix, and enhancement update</title>
    <updated>2026-10-04T03:42:02.703225+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: webkit2gtk3, AlmaLinux:8: webkit2gtk3-devel, AlmaLinux:8: webkit2gtk3-jsc, AlmaLinux:8: webkit2gtk3-jsc-devel</p>
<p>WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform.</p>
<p>The following packages have been upgraded to a later upstream version: webkit2gtk3 (2.34.6). (BZ#1985042)</p>
<p>Security Fix(es):</p>
<p>* webkitgtk: maliciously crafted web content may lead to arbitrary code execution due to use after free (CVE-2022-22620)</p>
<p>* webkitgtk: Use-after-free leading to arbitrary code execution (CVE-2021-30809)</p>
<p>* webkitgtk: Type confusion issue leading to arbitrary code execution (CVE-2021-30818)</p>
<p>* webkitgtk: Logic issue leading to HSTS bypass (CVE-2021-30823)</p>
<p>* webkitgtk: Memory corruption issue leading to arbitrary code execution (CVE-2021-30846)</p>
<p>* webkitgtk: Memory corruption issue leading to arbitrary code execution (CVE-2021-30848)</p>
<p>* webkitgtk: Multiple memory corruption issue leading to arbitrary code execution (CVE-2021-30849)</p>
<p>* webkitgtk: Memory corruption issue leading to arbitrary code execution (CVE-2021-30851)</p>
<p>* webkitgtk: Logic issue leading to Content Security Policy bypass (CVE-2021-30887)</p>
<p>* webkitgtk: Information leak via Content Security Policy reports (CVE-2021-30888)</p>
<p>* webkitgtk: Buffer overflow leading to arbitrary code execution (CVE-2021-30889)</p>
<p>* webkitgtk: Logic issue leading to universal cross-site scripting (CVE-2021-30890)</p>
<p>* webkitgtk: Cross-origin data exfiltration via resource timing API (CVE-2021-30897)</p>
<p>* webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution (CVE-2021-30934)</p>
<p>* webkitgtk: Process…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:1777"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-00734</id>
    <title>bdu:2022-00734</title>
    <updated>2026-10-04T03:42:02.703333+00:00</updated>
    <content>bdu:2022-00734</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-00734"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-088</id>
    <title>certfr-2022-avi-088 — De multiples vulnérabilités ont été découvertes dans les produits Apple.
Certaines d'entre elles permettent à un attaqu…</title>
    <updated>2026-10-04T03:42:02.703353+00:00</updated>
    <content>certfr-2022-avi-088</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-088"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-13448</id>
    <title>EUVD-2026-13448</title>
    <updated>2026-10-04T03:42:02.703371+00:00</updated>
    <content>EUVD-2026-13448</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-13448"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-22594</id>
    <title>fkie_cve-2022-22594</title>
    <updated>2026-10-04T03:42:02.703384+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-22594"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3xf9-qwxv-r3r4</id>
    <title>GHSA-3xf9-qwxv-r3r4</title>
    <updated>2026-10-04T03:42:02.703407+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3xf9-qwxv-r3r4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-22594</id>
    <title>gsd-2022-22594</title>
    <updated>2026-10-04T03:42:02.703422+00:00</updated>
    <content>gsd-2022-22594</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-22594"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:1777</id>
    <title>RHSA-2022:1777 — Red Hat Security Advisory: webkit2gtk3 security, bug fix, and enhancement update</title>
    <updated>2026-10-04T03:42:02.703433+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>webkitgtk: Use-after-free leading to arbitrary code execution webkitgtk: Type confusion issue leading to arbitrary code execution webkitgtk: Logic issue leading to HSTS bypass webkitgtk: Out-of-bounds read leading to memory disclosure webkitgtk: Memory corruption issue leading to arbitrary code execution webkitgtk: Memory corruption issue leading to arbitrary code execution webkitgtk: Multiple memory corruption issue leading to arbitrary code execution webkitgtk: Memory corruption issue leading to arbitrary code execution webkitgtk: CSS compositing issue leading to revealing of the browsing history webkitgtk: Logic issue leading to Content Security Policy bypass webkitgtk: Information leak via Content Security Policy reports webkitgtk: Buffer overflow leading to arbitrary code execution webkitgtk: Logic issue leading to universal cross-site scripting webkitgtk: Cross-origin data exfiltration via resource timing API webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing maliciously crafted web content may lead to arbitrary code execution webkitgtk: Processing ma…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:1777"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2025:10364</id>
    <title>RHSA-2025:10364 — Red Hat Security Advisory: webkitgtk4 security update</title>
    <updated>2026-10-04T03:42:02.703508+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>webkitgtk: Processing a file may lead to a denial of service or potentially disclose memory contents webkitgtk: Logic issue may lead to arbitrary code execution webkitgtk: Memory corruption may lead to arbitrary code execution webkitgtk: Logic issue may lead to cross site scripting webkitgtk: Memory corruption may lead to arbitrary code execution webkitgtk: Memory corruption may lead to arbitrary code execution webkitgtk: Input validation issue may lead to cross site scripting webkitgtk: Logic issue may lead to arbitrary code execution webkitgtk: Command injection in web inspector webkitgtk: Use-after-free may lead to application termination or arbitrary code execution webkitgtk: Out-of-bounds read may lead to unexpected application termination or arbitrary code execution webkitgtk: Use-after-free may lead to application termination or arbitrary code execution webkitgtk: Access issue in content security policy webkitgtk: A logic issue may lead to cross site scripting webkitgtk: use after free issue may lead to arbitrary code execution webkitgtk: type confusion may lead to arbitrary code execution webkitgtk: use-after-free may lead to arbitrary code execution webkitgtk: input validation issue may lead to a cross site scripting webkitgtk: out-of-bounds write may lead to code execution webkitgtk: use-after-free may lead to arbitrary code execution webkitgtk: Use-after-free in AudioSourceProviderGStreamer leading to arbitrary code execution webkitgtk: use-after-free may lead to…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2025:10364"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:0690-1</id>
    <title>SUSE-SU-2022:0690-1 — Security update for webkit2gtk3</title>
    <updated>2026-10-04T03:42:02.703866+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for webkit2gtk3</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:0690-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-22594</id>
    <title>UBUNTU-CVE-2022-22594</title>
    <updated>2026-10-04T03:42:02.703894+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: qtwebkit-opensource-src, Ubuntu:16.04:LTS: webkit2gtk, Ubuntu:16.04:LTS: qtwebkit-source, Ubuntu:16.04:LTS: webkitgtk, Ubuntu:18.04:LTS: webkit2gtk, Ubuntu:18.04:LTS: qtwebkit-opensource-src, Ubuntu:18.04:LTS: qtwebkit-source, Ubuntu:18.04:LTS: webkitgtk, Ubuntu:20.04:LTS: webkit2gtk, Ubuntu:20.04:LTS: qtwebkit-opensource-src and 4 more</p>
<p>A cross-origin issue in the IndexDB API was addressed with improved input validation. This issue is fixed in iOS 15.3 and iPadOS 15.3, watchOS 8.4, tvOS 15.3, Safari 15.3, macOS Monterey 12.2. A website may be able to track sensitive user information.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-22594"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1213</id>
    <title>WID-SEC-W-2023-1213 — Apple macOS (Monterey): Mehrere Schwachstellen</title>
    <updated>2026-10-04T03:42:02.703934+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in Apple macOS (Monterey) ausnutzen, um beliebigen Programmcode mit Kernel-Privilegien auszuführen, seine Privilegien zu erweitern, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen und Sicherheitsmaßnahmen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1213"/>
  </entry>
</feed>
