<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T17:45:57.589264+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-335517</id>
    <title>EUVD-2026-335517</title>
    <updated>2026-10-06T17:45:57.592145+00:00</updated>
    <content>EUVD-2026-335517</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-335517"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54784</id>
    <title>fkie_cve-2026-54784</title>
    <updated>2026-10-06T17:45:57.592179+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF SPNEGO SecurityContextToken negotiation can expose the proof key recovered from the RSTR when TransportWithMessageCredential with Windows client credentials and session establishment are used, allowing an observer to impersonate the authenticated Windows principal and decrypt or forge WS-SecureConversation traffic. This issue is fixed in version 1.9.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-54784"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2288-8h3r-cqgg</id>
    <title>GHSA-2288-8h3r-cqgg — CoreWCF: SPNEGO SecurityContextToken proof key wrapped without confidentiality</title>
    <updated>2026-10-06T17:45:57.592210+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> NuGet: CoreWCF.Primitives</p>
<p>### Impact
When the proof key recovered from the RSTR can be observed by a party that is not the legitimate client, that party can impersonate the authenticated Windows principal for the lifetime of the SCT (default ~10 hours) and decrypt or forge any subsequent WS‑SecureConversation traffic that uses keys derived from the SCT.</p>
<p>#### Preconditions
Using security mode TransportWithMessageCredential with client credential type Windows, along with session establishment (which triggers use of WS-SecureConversation).</p>
<p>### Patches
Fixed in CoreWCF v1.9.1</p>
<p>### Workarounds
Ensure communication is protected by SSL/TLS to prevent capturing of SCT negotiation handshake.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2288-8h3r-cqgg"/>
  </entry>
</feed>
