<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T21:54:21.767330+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-245078</id>
    <title>EUVD-2026-245078</title>
    <updated>2026-10-05T21:54:21.829325+00:00</updated>
    <content>EUVD-2026-245078</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-245078"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-49015</id>
    <title>fkie_cve-2025-49015</title>
    <updated>2026-10-05T21:54:21.829378+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates. In fact, the SDK was also using IP addresses instead of hostnames due to a configuration option that was incorrectly enabled by default.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-49015"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-px2c-r924-mwcc</id>
    <title>GHSA-px2c-r924-mwcc — Couchbase .NET SDK (client library) does not properly enable hostname verification for TLS certificates</title>
    <updated>2026-10-05T21:54:21.829427+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> NuGet: CouchbaseNetClient</p>
<p>The Couchbase .NET SDK (client library) before 3.7.1 does not properly enable hostname verification for TLS certificates. In fact, the SDK was also using IP addresses instead of hostnames due to a configuration option that was incorrectly enabled by default.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-px2c-r924-mwcc"/>
  </entry>
</feed>
