<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T14:22:16.689208+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-00774</id>
    <title>bdu:2024-00774</title>
    <updated>2026-10-07T14:22:16.808617+00:00</updated>
    <content>bdu:2024-00774</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-00774"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-196483</id>
    <title>EUVD-2026-196483</title>
    <updated>2026-10-07T14:22:16.808661+00:00</updated>
    <content>EUVD-2026-196483</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-196483"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-21484</id>
    <title>fkie_cve-2024-21484</title>
    <updated>2026-10-07T14:22:16.808677+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Versions of the package jsrsasign before 11.0.0 are vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP decryption process. An attacker can decrypt ciphertexts by exploiting the Marvin security flaw. Exploiting this vulnerability requires the attacker to have access to a large number of ciphertexts encrypted with the same key.

 Workaround 

The vulnerability can be mitigated by finding and replacing RSA and RSAOAEP decryption with another crypto library.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-21484"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rh63-9qcf-83gf</id>
    <title>GHSA-rh63-9qcf-83gf — Marvin Attack of RSA and RSAOAEP decryption in jsrsasign</title>
    <updated>2026-10-07T14:22:16.808710+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: jsrsasign</p>
<p>### Impact
RSA PKCS#1.5 or RSAOAEP ciphertexts may be decrypted by this Marvin attack vulnerability.</p>
<p>### Patches
update to jsrsasign 11.0.0.</p>
<p>### Workarounds
Find and replace RSA and RSAOAEP decryption with other crypto library.</p>
<p>### References
https://people.redhat.com/~hkario/marvin/
https://github.com/kjur/jsrsasign/issues/598
https://security.snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-6070732
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-21484</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rh63-9qcf-83gf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2024-21484</id>
    <title>gsd-2024-21484</title>
    <updated>2026-10-07T14:22:16.808740+00:00</updated>
    <content>gsd-2024-21484</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2024-21484"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2024:0928</id>
    <title>RHBA-2024:0928 — Red Hat Bug Fix Advisory: MTV 2.5.5 Images</title>
    <updated>2026-10-07T14:22:16.808753+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>follow-redirects: Improper Input Validation due to the improper handling of URLs by the url.parse() jsrsasign: vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP decryption process</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2024:0928"/>
  </entry>
</feed>
