<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:22:08.007449+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-00487</id>
    <title>bdu:2023-00487</title>
    <updated>2026-10-03T05:22:08.217591+00:00</updated>
    <content>bdu:2023-00487</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-00487"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-226623</id>
    <title>EUVD-2026-226623</title>
    <updated>2026-10-03T05:22:08.217633+00:00</updated>
    <content>EUVD-2026-226623</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-226623"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-24422</id>
    <title>fkie_cve-2023-24422</title>
    <updated>2026-10-03T05:22:08.217649+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-24422"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-76qj-9gwh-pvv3</id>
    <title>GHSA-76qj-9gwh-pvv3 — Sandbox bypass in Jenkins Script Security Plugin</title>
    <updated>2026-10-03T05:22:08.217680+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.plugins:script-security</p>
<p>A sandbox bypass vulnerability involving map constructors in Jenkins Script Security Plugin 1228.vd93135a_2fb_25 and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to bypass the sandbox protection and execute arbitrary code in the context of the Jenkins controller JVM.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-76qj-9gwh-pvv3"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-24422</id>
    <title>gsd-2023-24422</title>
    <updated>2026-10-03T05:22:08.217704+00:00</updated>
    <content>gsd-2023-24422</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-24422"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2023:1655</id>
    <title>RHSA-2023:1655 — Red Hat Security Advisory: OpenShift Container Platform 4.10.56 security update</title>
    <updated>2026-10-03T05:22:08.217716+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kube-apiserver: Aggregated API server can cause clients to be redirected (SSRF) spring-security-oauth2-client: Privilege Escalation in spring-security-oauth2-client spring-security: Authorization rules can be bypassed via forward or include dispatcher types in Spring Security apache-commons-text: variable interpolation RCE jenkins-2-plugins/script-security: Sandbox bypass vulnerability in Script Security Plugin haproxy: request smuggling attack in HTTP/1 header parsing Jenkins: XSS vulnerability in plugin manager Jenkins: Temporary plugin file created with insecure permissions Jenkins: Temporary file parameter created with insecure permissions Jenkins: Information disclosure through error stack traces related to agents</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2023:1655"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0193</id>
    <title>WID-SEC-W-2023-0193 — Jenkins Plugins: Mehrere Schwachstellen</title>
    <updated>2026-10-03T05:22:08.217758+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder angemeldeter Angreifer kann mehrere Schwachstellen in Jenkins Plugins ausnutzen, um seine Privilegien zu erhöhen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen und einen Cross-Site-Scripting-Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0193"/>
  </entry>
</feed>
