<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T06:37:52.950341+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-03480</id>
    <title>bdu:2026-03480</title>
    <updated>2026-10-04T06:37:53.092478+00:00</updated>
    <content>bdu:2026-03480</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-03480"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0323</id>
    <title>certfr-2026-avi-0323 — De multiples vulnérabilités ont été découvertes dans les produits Spring. Certaines d'entre elles permettent à un attaq…</title>
    <updated>2026-10-04T06:37:53.092524+00:00</updated>
    <content>certfr-2026-avi-0323</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0323"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-aq60759</id>
    <title>CLEANSTART-2026-AQ60759 — When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibilit…</title>
    <updated>2026-10-04T06:37:53.092543+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: apache-nifi</p>
<p>Security vulnerability affects the apache-nifi package. When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibility that the HTTP Headers will not be written.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-aq60759"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-278643</id>
    <title>EUVD-2026-278643</title>
    <updated>2026-10-04T06:37:53.092574+00:00</updated>
    <content>EUVD-2026-278643</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-278643"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-22732</id>
    <title>fkie_cve-2026-22732</title>
    <updated>2026-10-04T06:37:53.092586+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibility that the HTTP Headers will not be written. 
This issue affects Spring Security Servlet applications using lazy (default) writing of HTTP Headers:</p>
<p>: from 5.7.0 through 5.7.21, from 5.8.0 through 5.8.23, from 6.3.0 through 6.3.14, from 6.4.0 through 6.4.14, from 6.5.0 through 6.5.8, from 7.0.0 through 7.0.3.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-22732"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mf92-479x-3373</id>
    <title>GHSA-mf92-479x-3373 — Spring Security HTTP Headers Are not Written Under Some Conditions</title>
    <updated>2026-10-04T06:37:53.092610+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.springframework.security:spring-security-web</p>
<p>When applications specify HTTP response headers for servlet applications using Spring Security, there is the possibility that the HTTP Headers will not be written. 
This issue affects Spring Security: from 5.7.0 through 5.7.21, from 5.8.0 through 5.8.23, from 6.3.0 through 6.3.14, from 6.4.0 through 6.4.14, from 6.5.0 through 6.5.8, from 7.0.0 through 7.0.3.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mf92-479x-3373"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0258</id>
    <title>NCSC-2026-0258 — Kwetsbaarheden verholpen in Oracle Financial Services</title>
    <updated>2026-10-04T06:37:53.092635+00:00</updated>
    <content>NCSC-2026-0258</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0258"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0797</id>
    <title>WID-SEC-W-2026-0797 — VMware Tanzu Spring Security: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen</title>
    <updated>2026-10-04T06:37:53.092665+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in VMware Tanzu Spring Security ausnutzen, um Sicherheitsvorkehrungen zu umgehen und möglicherweise weitere Angriffe durchzuführen, beispielsweise zur Offenlegung vertraulicher Informationen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0797"/>
  </entry>
</feed>
