<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T10:13:37.590671+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2011-avi-265</id>
    <title>certa-2011-avi-265 — Une vulnérabilité dans JBoss Seam 2 permet à un utilisateur malveillant
d'exécuter du code arbitraire à distance au moy…</title>
    <updated>2026-10-03T10:13:37.737170+00:00</updated>
    <content>certa-2011-avi-265</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2011-avi-265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-114798</id>
    <title>EUVD-2026-114798</title>
    <updated>2026-10-03T10:13:37.737215+00:00</updated>
    <content>EUVD-2026-114798</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-114798"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2011-1484</id>
    <title>fkie_cve-2011-1484</title>
    <updated>2026-10-03T10:13:37.737230+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP04 and 5.1.0 and JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3.0.CP09 and 5.1.0, does not properly restrict use of Expression Language (EL) statements in FacesMessages during page exception handling, which allows remote attackers to execute arbitrary Java code via a crafted URL to an application.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2011-1484"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-x438-vrwx-gvfx</id>
    <title>GHSA-x438-vrwx-gvfx</title>
    <updated>2026-10-03T10:13:37.737259+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>jboss-seam.jar in the JBoss Seam 2 framework 2.2.x and earlier, as distributed in Red Hat JBoss Enterprise SOA Platform 4.3.0.CP04 and 5.1.0 and JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3.0.CP09 and 5.1.0, does not properly restrict use of Expression Language (EL) statements in FacesMessages during page exception handling, which allows remote attackers to execute arbitrary Java code via a crafted URL to an application.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-x438-vrwx-gvfx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2011-1484</id>
    <title>gsd-2011-1484</title>
    <updated>2026-10-03T10:13:37.737276+00:00</updated>
    <content>gsd-2011-1484</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2011-1484"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2011:0460</id>
    <title>RHSA-2011:0460 — Red Hat Security Advisory: jboss-seam2 security update</title>
    <updated>2026-10-03T10:13:37.737287+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>JBoss Seam privilege escalation caused by EL interpolation in FacesMessages</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2011:0460"/>
  </entry>
</feed>
