<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T18:41:25.872263+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-05611</id>
    <title>bdu:2023-05611</title>
    <updated>2026-10-02T18:41:26.380586+00:00</updated>
    <content>bdu:2023-05611</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-05611"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0337</id>
    <title>certfr-2023-avi-0337 — De multiples vulnérabilités ont été découvertes dans les produits &lt;span
class="textit"&gt;IBM&lt;/span&gt;. Elles permettent à u…</title>
    <updated>2026-10-02T18:41:26.380636+00:00</updated>
    <content>certfr-2023-avi-0337</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0337"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-gh89210</id>
    <title>Withdrawn: CLEANSTART-2026-GH89210 — Security fixes for CVE-2015-0886, CVE-2020-8908, CVE-2022-1471, CVE-2022-24823, CVE-2022-38752, CVE-2022-41854, CVE-202…</title>
    <updated>2026-10-02T18:41:26.380657+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: cassandra-reaper-fips</p>
<p>Multiple security vulnerabilities affect the cassandra-reaper-fips package. These issues are resolved in later releases. See references for individual vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-gh89210"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-163929</id>
    <title>EUVD-2026-163929</title>
    <updated>2026-10-02T18:41:26.380702+00:00</updated>
    <content>EUVD-2026-163929</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-163929"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-41854</id>
    <title>fkie_cve-2022-41854</title>
    <updated>2026-10-02T18:41:26.380715+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stack overflow. This effect may support a denial of service attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-41854"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w37g-rhq8-7m4j</id>
    <title>GHSA-w37g-rhq8-7m4j — Snakeyaml vulnerable to Stack overflow leading to denial of service</title>
    <updated>2026-10-02T18:41:26.380739+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.yaml:snakeyaml</p>
<p>Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stack overflow. This effect may support a denial of service attack.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w37g-rhq8-7m4j"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-41854</id>
    <title>gsd-2022-41854</title>
    <updated>2026-10-02T18:41:26.380760+00:00</updated>
    <content>gsd-2022-41854</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-41854"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-41854</id>
    <title>msrc_CVE-2022-41854 — Stack Overflow in Snakeyaml</title>
    <updated>2026-10-02T18:41:26.380771+00:00</updated>
    <content>msrc_CVE-2022-41854</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-41854"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2023-1162</id>
    <title>OESA-2023-1162 — snakeyaml security update</title>
    <updated>2026-10-02T18:41:26.380787+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS: snakeyaml</p>
<p>SnakeYAML is a YAML parser and emitter for the Java Virtual Machine. YAML is a data serialization format designed for human readability and interaction with scripting languages.

Security Fix(es):

The package org.yaml:snakeyaml from 0 and before 1.31 are vulnerable to Denial of Service (DoS) due missing to nested depth limitation for collections.(CVE-2022-25857)

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow.(CVE-2022-38749)

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow.(CVE-2022-38750)

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stackoverflow.(CVE-2022-38751)

Using snakeYAML to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stack-overflow.(CVE-2022-38752)</p>
<p>Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2023-1162"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2023:3300</id>
    <title>RHBA-2023:3300 — Red Hat Bug Fix Advisory: Release of Bug Advisories for the Jenkins image and Jenkins agent base image</title>
    <updated>2026-10-02T18:41:26.380821+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>dev-java/snakeyaml: DoS via stack overflow</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2023:3300"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-41854</id>
    <title>Withdrawn: UBUNTU-CVE-2022-41854</title>
    <updated>2026-10-02T18:41:26.380839+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: snakeyaml, Ubuntu:Pro:16.04:LTS: snakeyaml, Ubuntu:Pro:18.04:LTS: snakeyaml, Ubuntu:20.04:LTS: snakeyaml, Ubuntu:22.04:LTS: snakeyaml, Ubuntu:24.10: snakeyaml, Ubuntu:24.04:LTS: snakeyaml</p>
<p>Those using Snakeyaml to parse untrusted YAML files may be vulnerable to Denial of Service attacks (DOS). If the parser is running on user supplied input, an attacker may supply content that causes the parser to crash by stack overflow. This effect may support a denial of service attack.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-41854"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0416</id>
    <title>WID-SEC-W-2023-0416 — Red Hat OpenShift: Mehrere Schwachstellen ermöglichen Denial of Service</title>
    <updated>2026-10-02T18:41:26.380867+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0416"/>
  </entry>
</feed>
