<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T20:38:18.614345+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cve-2016-5697</id>
    <title>CVE-2016-5697</title>
    <updated>2026-10-03T20:38:18.646996+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ruby-saml before 1.3.0 allows attackers to perform XML signature wrapping attacks via unspecified vectors.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cve-2016-5697"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/usn-7309-1</id>
    <title>USN-7309-1 — Ruby SAML vulnerabilities</title>
    <updated>2026-10-03T20:38:18.647046+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: ruby-saml, Ubuntu:Pro:18.04:LTS: ruby-saml, Ubuntu:20.04:LTS: ruby-saml, Ubuntu:22.04:LTS: ruby-saml, Ubuntu:24.04:LTS: ruby-saml</p>
<p>It was discovered that Ruby SAML did not properly validate SAML responses.
An unauthenticated attacker could use this vulnerability to log in as an 
abitrary user. This issue only affected Ubuntu 16.04 LTS. (CVE-2016-5697)</p>
<p>It was discovered that Ruby SAML incorrectly utilized the results of XML
DOM traversal and canonicalization APIs. An unauthenticated attacker could
use this vulnerability to log in as an abitrary user. This issue only 
affected Ubuntu 16.04 LTS. (CVE-2017-11428)</p>
<p>It was discovered that Ruby SAML did not properly verify the signature of
the SAML Response, allowing multiple elements with the same ID. An 
unauthenticated attacker could use this vulnerability to log in as an 
abitrary user. (CVE-2024-45409)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/usn-7309-1"/>
  </entry>
</feed>
