<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:45:45.920117+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-08726</id>
    <title>bdu:2024-08726</title>
    <updated>2026-10-03T21:45:46.104583+00:00</updated>
    <content>bdu:2024-08726</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-08726"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0900</id>
    <title>certfr-2024-avi-0900 — De multiples vulnérabilités ont été découvertes dans Spring Framework. Elles permettent à un attaquant de provoquer une…</title>
    <updated>2026-10-03T21:45:46.104647+00:00</updated>
    <content>certfr-2024-avi-0900</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0900"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-hw70472</id>
    <title>Withdrawn: CLEANSTART-2026-HW70472 — Security fixes in activemq 5.19.8-r3</title>
    <updated>2026-10-03T21:45:46.104667+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: activemq</p>
<p>Package activemq version 5.19.8-r3 fixes 29 vulnerabilities: CVE-2016-1000027, CVE-2024-38816, CVE-2024-38819, CVE-2024-38820, CVE-2024-38827...</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-hw70472"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-209953</id>
    <title>EUVD-2026-209953</title>
    <updated>2026-10-03T21:45:46.104702+00:00</updated>
    <content>EUVD-2026-209953</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-209953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-38819</id>
    <title>fkie_cve-2024-38819</title>
    <updated>2026-10-03T21:45:46.104715+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-38819"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g5vr-rgqm-vf78</id>
    <title>GHSA-g5vr-rgqm-vf78 — Spring Framework Path Traversal vulnerability</title>
    <updated>2026-10-03T21:45:46.104737+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.springframework:spring-webflux, Maven: org.springframework:spring-webmvc</p>
<p>Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g5vr-rgqm-vf78"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:10700</id>
    <title>RHSA-2024:10700 — Red Hat Security Advisory: Red Hat Build of Apache Camel 4.8 for Spring Boot security update.</title>
    <updated>2026-10-03T21:45:46.104763+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>protobuf: StackOverflow vulnerability in Protocol Buffers kafka-clients: privilege escalation to filesystem read-access via automatic ConfigProvider org.springframework:spring-webmvc: Path traversal vulnerability in functional web frameworks</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:10700"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-38819</id>
    <title>UBUNTU-CVE-2024-38819</title>
    <updated>2026-10-03T21:45:46.104804+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: libspring-java, Ubuntu:Pro:16.04:LTS: libspring-java, Ubuntu:Pro:18.04:LTS: libspring-java, Ubuntu:Pro:20.04:LTS: libspring-java, Ubuntu:Pro:22.04:LTS: libspring-java, Ubuntu:Pro:24.04:LTS: libspring-java, Ubuntu:25.10: libspring-java, Ubuntu:26.04:LTS: libspring-java</p>
<p>Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-38819"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3237</id>
    <title>WID-SEC-W-2024-3237 — VMware Tanzu Spring Framework: Mehrere Schwachstellen</title>
    <updated>2026-10-03T21:45:46.104863+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in VMware Tanzu Spring Framework ausnutzen, um Informationen offenzulegen oder Sicherheitsmaßnahmen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3237"/>
  </entry>
</feed>
