<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T20:23:45.546307+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-01328</id>
    <title>bdu:2024-01328</title>
    <updated>2026-10-03T20:23:45.676016+00:00</updated>
    <content>bdu:2024-01328</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-01328"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2024-24990</id>
    <title>Withdrawn: BELL-CVE-2024-24990 — CVE-2024-24990 does not affect BellSoft software</title>
    <updated>2026-10-03T20:23:45.676066+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2024-24990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-nginx-2024-24990</id>
    <title>BIT-nginx-2024-24990 — NGINX HTTP/3 QUIC vulnerability</title>
    <updated>2026-10-03T20:23:45.676093+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: nginx</p>
<p>When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed requests can cause NGINX worker processes to terminate.</p>
<p>Note: The HTTP/3 QUIC module is not enabled by default and is considered experimental. For more information, refer to  Support for QUIC and HTTP/3 https://nginx.org/en/docs/quic.html .</p>
<p>Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-nginx-2024-24990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0133</id>
    <title>certfr-2024-avi-0133 — De multiples vulnérabilités ont été découvertes dans&lt;span
class="textit"&gt; Nginx&lt;/span&gt;. Elles permettent à un attaquant…</title>
    <updated>2026-10-03T20:23:45.676144+00:00</updated>
    <content>certfr-2024-avi-0133</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0133"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-238439</id>
    <title>EUVD-2026-238439</title>
    <updated>2026-10-03T20:23:45.676170+00:00</updated>
    <content>EUVD-2026-238439</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-238439"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-24990</id>
    <title>fkie_cve-2024-24990</title>
    <updated>2026-10-03T20:23:45.676189+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed requests can cause NGINX worker processes to terminate.</p>
<p>Note: The HTTP/3 QUIC module is not enabled by default and is considered experimental. For more information, refer to  Support for QUIC and HTTP/3 https://nginx.org/en/docs/quic.html .</p>
<p>Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-24990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-38gr-cjjp-3f5w</id>
    <title>GHSA-38gr-cjjp-3f5w</title>
    <updated>2026-10-03T20:23:45.676233+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed requests can cause NGINX worker processes to terminate.</p>
<p>Note: The HTTP/3 QUIC module is not enabled by default and is considered experimental. For more information, refer to  Support for QUIC and HTTP/3 https://nginx.org/en/docs/quic.html .</p>
<p>Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-38gr-cjjp-3f5w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-24990</id>
    <title>gsd-2024-24990</title>
    <updated>2026-10-03T20:23:45.676266+00:00</updated>
    <content>gsd-2024-24990</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-24990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-226-17</id>
    <title>ICSA-25-226-17 — Siemens SINEC Traffic Analyzer</title>
    <updated>2026-10-03T20:23:45.676284+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed requests can cause NGINX worker processes to terminate.</p>
<p>Note: The HTTP/3 QUIC module is not enabled by default and is considered experimental. For more information, refer to  Support for QUIC and HTTP/3 https://nginx.org/en/docs/quic.html .</p>
<p>NOTE: Software versions which have reached End of Technical Support (EoTS) are not evaluated When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed requests can cause NGINX worker processes to terminate.</p>
<p>Note: The HTTP/3 QUIC module is not enabled by default and is considered experimental. For more information, refer to  Support for QUIC and HTTP/3 https://nginx.org/en/docs/quic.html .</p>
<p>Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated The affected application runs docker containers without adequate resource and security limitations. This could allow an attacker to perform a denial-of-service (DoS) attack. The affected application runs docker containers without adequate security controls to enforce isolation. This could allow an attacker to gain elevated access, potentially accessing sensitive host system resources. The affected application exposes an internal service port to be accessible from outside the system. This could allow an unauthorized attacker to access the application. The affected application uses a Content Security Policy that allows unsafe script execut…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-226-17"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0395</id>
    <title>WID-SEC-W-2024-0395 — NGINX und NGINX NGINX Plus: Mehrere Schwachstellen ermöglichen Denial of Service</title>
    <updated>2026-10-03T20:23:45.676382+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in NGINX und NGINX NGINX Plus ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0395"/>
  </entry>
</feed>
