<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T13:54:20.777061+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-04249</id>
    <title>bdu:2026-04249</title>
    <updated>2026-10-08T13:54:20.780502+00:00</updated>
    <content>bdu:2026-04249</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-04249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-jenkins-2026-33002</id>
    <title>BIT-jenkins-2026-33002</title>
    <updated>2026-10-08T13:54:20.780532+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: jenkins</p>
<p>Jenkins 2.442 through 2.554 (both inclusive), LTS 2.426.3 through LTS 2.541.2 (both inclusive) performs origin validation of requests made through the CLI WebSocket endpoint by computing the expected origin for comparison using the Host or X-Forwarded-Host HTTP request headers, making it vulnerable to DNS rebinding attacks that allow bypassing origin validation.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-jenkins-2026-33002"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-276566</id>
    <title>EUVD-2026-276566</title>
    <updated>2026-10-08T13:54:20.780564+00:00</updated>
    <content>EUVD-2026-276566</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-276566"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-33002</id>
    <title>fkie_cve-2026-33002</title>
    <updated>2026-10-08T13:54:20.780577+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Jenkins 2.442 through 2.554 (both inclusive), LTS 2.426.3 through LTS 2.541.2 (both inclusive) performs origin validation of requests made through the CLI WebSocket endpoint by computing the expected origin for comparison using the Host or X-Forwarded-Host HTTP request headers, making it vulnerable to DNS rebinding attacks that allow bypassing origin validation.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-33002"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-phhv-63fh-rrc8</id>
    <title>GHSA-phhv-63fh-rrc8 — Jenkins has a DNS rebinding vulnerability in WebSocket CLI origin validation</title>
    <updated>2026-10-08T13:54:20.780598+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.jenkins-ci.main:jenkins-core</p>
<p>Jenkins 2.442 through 2.554 (both inclusive), LTS 2.426.3 through LTS 2.541.2 (both inclusive) performs origin validation of requests made through the CLI WebSocket endpoint by computing the expected origin for comparison using the Host or X-Forwarded-Host HTTP request headers, making it vulnerable to DNS rebinding attacks that allow bypassing origin validation.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-phhv-63fh-rrc8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0779</id>
    <title>WID-SEC-W-2026-0779 — Jenkins: Mehrere Schwachstellen</title>
    <updated>2026-10-08T13:54:20.780619+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Jenkins ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen oder vertrauliche Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0779"/>
  </entry>
</feed>
