<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T22:13:37.765585+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-01921</id>
    <title>bdu:2024-01921</title>
    <updated>2026-10-03T22:13:37.875080+00:00</updated>
    <content>bdu:2024-01921</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-01921"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0524</id>
    <title>certfr-2025-avi-0524 — De multiples vulnérabilités ont été découvertes dans VMware Tanzu. Elles permettent à un attaquant de provoquer un prob…</title>
    <updated>2026-10-03T22:13:37.875116+00:00</updated>
    <content>certfr-2025-avi-0524</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0524"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-vj98970</id>
    <title>CLEANSTART-2026-VJ98970 — Security fix for CVE-2024-27304 applied in: wavefront-collector-for-kubernetes 1.13.0-r0</title>
    <updated>2026-10-03T22:13:37.875136+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: wavefront-collector-for-kubernetes</p>
<p>Security vulnerability affects the wavefront-collector-for-kubernetes package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-vj98970"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-207059</id>
    <title>EUVD-2026-207059</title>
    <updated>2026-10-03T22:13:37.875165+00:00</updated>
    <content>EUVD-2026-207059</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-207059"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-27304</id>
    <title>fkie_cve-2024-27304</title>
    <updated>2026-10-03T22:13:37.875177+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pgx is a PostgreSQL driver and toolkit for Go. SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be sent as multiple messages under the attacker's control. The problem is resolved in v4.18.2 and v5.5.4. As a workaround, reject user input large enough to cause a single query or bind message to exceed 4 GB in size.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-27304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mrww-27vc-gghv</id>
    <title>GHSA-mrww-27vc-gghv — pgx SQL Injection via Protocol Message Size Overflow</title>
    <updated>2026-10-03T22:13:37.875202+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Go: github.com/jackc/pgx, Go: github.com/jackc/pgx/v4, Go: github.com/jackc/pgx/v5</p>
<p>### Impact</p>
<p>SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be sent as multiple messages under the attacker's control.</p>
<p>### Patches</p>
<p>The problem is resolved in v4.18.2 and v5.5.4.</p>
<p>### Workarounds</p>
<p>Reject user input large enough to cause a single query or bind message to exceed 4 GB in size.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mrww-27vc-gghv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-27304</id>
    <title>gsd-2024-27304</title>
    <updated>2026-10-03T22:13:37.875247+00:00</updated>
    <content>gsd-2024-27304</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-27304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2024-27304</id>
    <title>msrc_CVE-2024-27304 — pgx SQL Injection via Protocol Message Size Overflow</title>
    <updated>2026-10-03T22:13:37.875260+00:00</updated>
    <content>msrc_CVE-2024-27304</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2024-27304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:1321</id>
    <title>RHSA-2024:1321 — Red Hat Security Advisory: ACS 4.3 enhancement and security update</title>
    <updated>2026-10-03T22:13:37.875276+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pgx: SQL Injection via Line Comment Creation pgx: SQL Injection via Protocol Message Size Overflow</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:1321"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27304</id>
    <title>UBUNTU-CVE-2024-27304</title>
    <updated>2026-10-03T22:13:37.875295+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:22.04:LTS: golang-github-jackc-pgx, Ubuntu:24.04:LTS: golang-github-jackc-pgproto3, Ubuntu:24.04:LTS: golang-github-jackc-pgx, Ubuntu:25.10: golang-github-jackc-pgproto3, Ubuntu:25.10: golang-github-jackc-pgx, Ubuntu:26.04:LTS: golang-github-jackc-pgproto3, Ubuntu:26.04:LTS: golang-github-jackc-pgx</p>
<p>pgx is a PostgreSQL driver and toolkit for Go. SQL injection can occur if an attacker can cause a single query or bind message to exceed 4 GB in size. An integer overflow in the calculated message size can cause the one large message to be sent as multiple messages under the attacker's control. The problem is resolved in v4.18.2 and v5.5.4. As a workaround, reject user input large enough to cause a single query or bind message to exceed 4 GB in size.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-27304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0626</id>
    <title>WID-SEC-W-2024-0626 — Red Hat Enterprise Linux: Mehrere Schwachstellen ermöglichen Manipulation von Dateien</title>
    <updated>2026-10-03T22:13:37.875335+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0626"/>
  </entry>
</feed>
