<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T17:22:54.638793+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-05159</id>
    <title>bdu:2024-05159</title>
    <updated>2026-10-06T17:22:54.648715+00:00</updated>
    <content>bdu:2024-05159</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-05159"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-217453</id>
    <title>EUVD-2026-217453</title>
    <updated>2026-10-06T17:22:54.648751+00:00</updated>
    <content>EUVD-2026-217453</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-217453"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-39459</id>
    <title>fkie_cve-2024-39459</title>
    <updated>2026-10-06T17:22:54.648765+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In rare cases Jenkins Plain Credentials Plugin 182.v468b_97b_9dcb_8 and earlier stores secret file credentials unencrypted (only Base64 encoded) on the Jenkins controller file system, where they can be viewed by users with access to the Jenkins controller file system (global credentials) or with Item/Extended Read permission (folder-scoped credentials).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-39459"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3cpq-rw36-cppv</id>
    <title>GHSA-3cpq-rw36-cppv — Secret file credentials stored unencrypted in rare cases by Plain Credentials Plugin</title>
    <updated>2026-10-06T17:22:54.648795+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.plugins:plain-credentials</p>
<p>When creating secret file credentials Plain Credentials Plugin 182.v468b_97b_9dcb_8 and earlier attempts to decrypt the content of the file to check if it constitutes a valid encrypted secret. In rare cases the file content matches the expected format of an encrypted secret, and the file content will be stored unencrypted (only Base64 encoded) on the Jenkins controller file system.</p>
<p>These credentials can be viewed by users with access to the Jenkins controller file system (global credentials) or with Item/Extended Read permission (folder-scoped credentials).</p>
<p>Plain Credentials Plugin 183.va_de8f1dd5a_2b_ no longer attempts to decrypt the content of the file when creating secret file credentials.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3cpq-rw36-cppv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1464</id>
    <title>WID-SEC-W-2024-1464 — Jenkins: Mehrere Schwachstellen ermöglichen Offenlegung von Informationen</title>
    <updated>2026-10-06T17:22:54.648823+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter anonymer oder lokaler Angreifer kann mehrere Schwachstellen in Jenkins ausnutzen, um Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1464"/>
  </entry>
</feed>
