<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T12:10:02.531166+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-96781</id>
    <title>EUVD-2026-96781</title>
    <updated>2026-10-02T12:10:02.619197+00:00</updated>
    <content>EUVD-2026-96781</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-96781"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-0225</id>
    <title>fkie_cve-2014-0225</title>
    <updated>2026-10-02T12:10:02.619249+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>When processing user provided XML documents, the Spring Framework 4.0.0 to 4.0.4, 3.0.0 to 3.2.8, and possibly earlier unsupported versions did not disable by default the resolution of URI references in a DTD declaration. This enabled an XXE attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-0225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f93f-g33r-8pcp</id>
    <title>GHSA-f93f-g33r-8pcp — Improper Restriction of XML External Entity Reference in Spring Framework</title>
    <updated>2026-10-02T12:10:02.619282+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.springframework:spring-webmvc</p>
<p>When processing user provided XML documents, the Spring Framework 4.0.0 to 4.0.4, 3.0.0 to 3.2.8, and possibly earlier unsupported versions did not disable by default the resolution of URI references in a DTD declaration. This enabled an XXE attack.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f93f-g33r-8pcp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-0225</id>
    <title>gsd-2014-0225</title>
    <updated>2026-10-02T12:10:02.619310+00:00</updated>
    <content>gsd-2014-0225</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-0225"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2014:1351</id>
    <title>RHSA-2014:1351 — Red Hat Security Advisory: Red Hat JBoss Fuse/A-MQ 6.1.0 security update</title>
    <updated>2026-10-02T12:10:02.619322+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CXF: The SecurityTokenService accepts certain invalid SAML Tokens as valid CXF: UsernameTokens are sent in plaintext with a Symmetric EncryptBeforeSigning policy Shiro: successful authentication without specifying user name or password Xalan-Java: insufficient constraints in secure processing feature CXF: HTML content posted to SOAP endpoint could cause OOM errors CXF: Large invalid content could cause temporary space to fill netty: DoS via memory exhaustion during data aggregation Framework: Information disclosure via SSRF</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2014:1351"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-0225</id>
    <title>UBUNTU-CVE-2014-0225</title>
    <updated>2026-10-02T12:10:02.619348+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: libspring-java</p>
<p>When processing user provided XML documents, the Spring Framework 4.0.0 to 4.0.4, 3.0.0 to 3.2.8, and possibly earlier unsupported versions did not disable by default the resolution of URI references in a DTD declaration. This enabled an XXE attack.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-0225"/>
  </entry>
</feed>
