<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T03:29:36.570224+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-171449</id>
    <title>EUVD-2026-171449</title>
    <updated>2026-10-08T03:29:36.572760+00:00</updated>
    <content>EUVD-2026-171449</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-171449"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000142</id>
    <title>fkie_cve-2018-1000142</title>
    <updated>2026-10-08T03:29:36.572803+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An exposure of sensitive information vulnerability exists in Jenkins GitHub Pull Request Builder Plugin version 1.39.0 and older in GhprbCause.java that allows an attacker with local file system access to obtain GitHub credentials.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000142"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-hr74-2j5v-ghfv</id>
    <title>GHSA-hr74-2j5v-ghfv — Jenkins GitHub Pull Request Builder Plugin allows attacker with local file system access to obtain GitHub credentials</title>
    <updated>2026-10-08T03:29:36.572833+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.plugins:ghprb</p>
<p>An exposure of sensitive information vulnerability exists in Jenkins GitHub Pull Request Builder Plugin version 1.39.0 and older in GhprbCause.java that allows an attacker with local file system access to obtain GitHub credentials. Since 1.40.0, the plugin no longer stores serialized objects containing the credential on disk. Builds started before the plugin was updated to 1.40.0 will retain the encoded credentials on disk. We strongly recommend revoking old GitHub credentials used in Jenkins. We’re providing a script for use in the Script Console that will attempt to remove old stored credentials from build.xml files.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-hr74-2j5v-ghfv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-1000142</id>
    <title>gsd-2018-1000142</title>
    <updated>2026-10-08T03:29:36.572864+00:00</updated>
    <content>gsd-2018-1000142</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-1000142"/>
  </entry>
</feed>
