<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T03:56:42.424312+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-333318</id>
    <title>EUVD-2026-333318</title>
    <updated>2026-10-05T03:56:42.480694+00:00</updated>
    <content>EUVD-2026-333318</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-333318"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-57299</id>
    <title>fkie_cve-2026-57299</title>
    <updated>2026-10-05T03:56:42.480730+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Missing permission checks in Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier allow attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-57299"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8263-qv4g-vfxr</id>
    <title>GHSA-8263-qv4g-vfxr — Jenkins Contrast Continuous Application Security Plugin missing permission checks</title>
    <updated>2026-10-05T03:56:42.480763+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.plugins:contrast-continuous-application-security</p>
<p>Jenkins Contrast Continuous Application Security Plugin 3.11 and earlier does not perform permission checks in several HTTP endpoints that fill list box options with the names of the configured Contrast metadata.</p>
<p>This allows attackers with Overall/Read permission to enumerate the names of configured Contrast metadata.</p>
<p>Contrast Continuous Application Security Plugin 3.12 requires the appropriate permission to enumerate the configured Contrast metadata.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8263-qv4g-vfxr"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2074</id>
    <title>WID-SEC-W-2026-2074 — Jenkins Plugins: Mehrere Schwachstellen</title>
    <updated>2026-10-05T03:56:42.480792+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Jenkins Plugins ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen zu manipulieren oder offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2074"/>
  </entry>
</feed>
