<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T01:20:39.871470+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-260311</id>
    <title>EUVD-2026-260311</title>
    <updated>2026-10-03T01:20:39.875508+00:00</updated>
    <content>EUVD-2026-260311</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-260311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-3628</id>
    <title>fkie_cve-2023-3628</title>
    <updated>2026-10-03T01:20:39.875539+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in Infinispan's REST. Bulk read endpoints do not properly evaluate user permissions for the operation. This issue could allow an authenticated user to access information outside of their intended permissions.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-3628"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fhr7-8jx4-r9cp</id>
    <title>GHSA-fhr7-8jx4-r9cp — Infinispan REST Server's bulk read endpoints do not properly evaluate user permissions</title>
    <updated>2026-10-03T01:20:39.875571+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.infinispan:infinispan-server-rest</p>
<p>A flaw was found in Infinispan's REST. Bulk read endpoints do not properly evaluate user permissions for the operation. This issue could allow an authenticated user to access information outside of their intended permissions.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fhr7-8jx4-r9cp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-3628</id>
    <title>gsd-2023-3628</title>
    <updated>2026-10-03T01:20:39.875603+00:00</updated>
    <content>gsd-2023-3628</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-3628"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2023:5396</id>
    <title>RHSA-2023:5396 — Red Hat Security Advisory: Red Hat Data Grid 8.4.4 security update</title>
    <updated>2026-10-03T01:20:39.875616+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>mina-sshd: Java unsafe deserialization vulnerability infispan: REST bulk ops don't check permissions infinispan: Non-admins should not be able to get cache config via REST API infinispan: circular reference on marshalling leads to DoS netty: SniHandler 16MB allocation leads to OOM jackson-databind: denial of service via cylic dependencies apache-mina-sshd: information exposure in SFTP server implementations</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2023:5396"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2518</id>
    <title>WID-SEC-W-2023-2518 — Red Hat JBoss Data Grid: Mehre Schwachstellen</title>
    <updated>2026-10-03T01:20:39.875641+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter anonymer Angreifer kann eine Schwachstelle in Red Hat JBoss Data Grid ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder vertrauliche Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2518"/>
  </entry>
</feed>
