<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T19:02:23.572493+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-08539</id>
    <title>bdu:2023-08539</title>
    <updated>2026-10-03T19:02:23.671056+00:00</updated>
    <content>bdu:2023-08539</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-08539"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0627</id>
    <title>certfr-2026-avi-0627 — De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-03T19:02:23.671107+00:00</updated>
    <content>certfr-2026-avi-0627</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0627"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-202809</id>
    <title>EUVD-2026-202809</title>
    <updated>2026-10-03T19:02:23.671147+00:00</updated>
    <content>EUVD-2026-202809</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-202809"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-45868</id>
    <title>fkie_cve-2022-45868</title>
    <updated>2026-10-03T19:02:23.671173+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states "This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that." Nonetheless, the issue was fixed in 2.2.220.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-45868"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-22wj-vf5f-wrvj</id>
    <title>GHSA-22wj-vf5f-wrvj — Password exposure in H2 Database</title>
    <updated>2026-10-03T19:02:23.671237+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: com.h2database:h2</p>
<p>The web-based admin console in H2 Database Engine through 2.1.214 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states "This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that."</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-22wj-vf5f-wrvj"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-45868</id>
    <title>gsd-2022-45868</title>
    <updated>2026-10-03T19:02:23.671283+00:00</updated>
    <content>gsd-2022-45868</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-45868"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-261-04</id>
    <title>ICSA-25-261-04 — Multiple Open-Source Software Vulnerabilities in Hitachi Energy Asset Suite Product</title>
    <updated>2026-10-03T19:02:23.671303+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Hitachi Energy is aware of multiple reported vulnerabilities that affect the Asset Suite product versions mentioned in this document below. If exploited these vulnerabilities can potentially impact on confidentiality, integrity and availability of the product. Please refer to the Recommended Immediate Actions for information about the mitigation/remediation.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-261-04"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2219</id>
    <title>WID-SEC-W-2022-2219 — H2: Schwachstelle ermöglicht Privilegieneskalation</title>
    <updated>2026-10-03T19:02:23.671337+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in H2 ausnutzen, um seine Privilegien zu erhöhen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2219"/>
  </entry>
</feed>
