<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-09T08:53:53.582005+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-00110</id>
    <title>bdu:2024-00110</title>
    <updated>2026-10-09T08:53:53.658194+00:00</updated>
    <content>bdu:2024-00110</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-00110"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-261496</id>
    <title>EUVD-2026-261496</title>
    <updated>2026-10-09T08:53:53.658236+00:00</updated>
    <content>EUVD-2026-261496</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-261496"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-6944</id>
    <title>fkie_cve-2023-6944</title>
    <updated>2026-10-09T08:53:53.658259+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the Red Hat Developer Hub (RHDH). The catalog-import function leaks GitLab access tokens on the frontend when the base64 encoded GitLab token includes a newline at the end of the string. The sanitized error can display on the frontend, including the raw access token. Upon gaining access to this token and depending on permissions, an attacker could push malicious code to repositories, delete resources in Git, revoke or generate new keys, and sign code illegitimately.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-6944"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-86rg-pf4c-5grg</id>
    <title>GHSA-86rg-pf4c-5grg — @backstage/backend-app-api leaks GitLab access tokens</title>
    <updated>2026-10-09T08:53:53.658292+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: @backstage/backend-app-api</p>
<p>A flaw was found in the Red Hat Developer Hub (RHDH). The catalog-import function leaks GitLab access tokens on the frontend when the base64 encoded GitLab token includes a newline at the end of the string. The sanitized error can display on the frontend, including the raw access token. Upon gaining access to this token and depending on permissions, an attacker could push malicious code to repositories, delete resources in Git, revoke or generate new keys, and sign code illegitimately.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-86rg-pf4c-5grg"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-6944</id>
    <title>gsd-2023-6944</title>
    <updated>2026-10-09T08:53:53.658324+00:00</updated>
    <content>gsd-2023-6944</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-6944"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2024:5869</id>
    <title>RHBA-2024:5869 — Red Hat Bug Fix Advisory: updated RHDH-1.1-RHEL-9 container images</title>
    <updated>2026-10-09T08:53:53.658337+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>RHDH: catalog-import function leaks credentials to frontend</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2024:5869"/>
  </entry>
</feed>
