<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T04:54:56.699055+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-11869</id>
    <title>bdu:2026-11869</title>
    <updated>2026-10-03T04:54:56.709637+00:00</updated>
    <content>bdu:2026-11869</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-11869"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0810</id>
    <title>certfr-2026-avi-0810 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-03T04:54:56.709668+00:00</updated>
    <content>certfr-2026-avi-0810</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0810"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-ce10830</id>
    <title>CLEANSTART-2026-CE10830 — Security fix for CVE-2026-42402 applied in: wildfly 39.0.1-r0</title>
    <updated>2026-10-03T04:54:56.709686+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: wildfly</p>
<p>Security vulnerability affects the wildfly package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-ce10830"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-308198</id>
    <title>EUVD-2026-308198</title>
    <updated>2026-10-03T04:54:56.709714+00:00</updated>
    <content>EUVD-2026-308198</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-308198"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-42402</id>
    <title>fkie_cve-2026-42402</title>
    <updated>2026-10-03T04:54:56.709726+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.</p>
<p>Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-42402"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g36m-9g3m-2vmp</id>
    <title>GHSA-g36m-9g3m-2vmp — Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization</title>
    <updated>2026-10-03T04:54:56.709749+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.apache.neethi:neethi</p>
<p>Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.</p>
<p>Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g36m-9g3m-2vmp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2050</id>
    <title>WID-SEC-W-2026-2050 — IBM WebSphere Application Server und Application Server Liberty: Mehrere Schwachstellen</title>
    <updated>2026-10-03T04:54:56.709770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server Liberty und IBM WebSphere Application Server ausnutzen, um Dateien zu manipulieren, um einen Cross-Site Scripting Angriff durchzuführen, um beliebigen Programmcode auszuführen, um Informationen offenzulegen, und um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2050"/>
  </entry>
</feed>
