<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:36:01 +0000</lastBuildDate>
    <item>
      <title>certa-2009-avi-032 — De multiples vulnérabilités affectent la version d'&lt;span
class="textit"&gt;Apache Tomcat&lt;/span&gt; fournie avec &lt;span class="…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-032</link>
      <description>certa-2009-avi-032</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-032</guid>
    </item>
    <item>
      <title>EUVD-2026-145200</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-145200</link>
      <description>EUVD-2026-145200</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-145200</guid>
    </item>
    <item>
      <title>fkie_cve-2006-7196</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2006-7196</link>
      <description>&lt;p&gt;Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors.  NOTE: this may be related to CVE-2006-0254.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors.  NOTE: this may be related to CVE-2006-0254.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2006-7196</guid>
    </item>
    <item>
      <title>GHSA-pm78-wxxf-fw98 — Cross-site scripting in Apache Tomcat</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pm78-wxxf-fw98</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors.  NOTE: this may be related to CVE-2006-0254.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors.  NOTE: this may be related to CVE-2006-0254.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pm78-wxxf-fw98</guid>
    </item>
    <item>
      <title>gsd-2006-7196</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2006-7196</link>
      <description>gsd-2006-7196</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2006-7196</guid>
    </item>
    <item>
      <title>RHSA-2007:0326 — Red Hat Security Advisory: tomcat security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2007:0326</link>
      <description>&lt;p&gt;tomcat multiple content-length header poisioning tomcat directory listing issue tomcat XSS in example webapps tomcat XSS in example webapps tomcat directory traversal tomcat accept-language xss flaw tomcat anonymous cipher issue&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat multiple content-length header poisioning tomcat directory listing issue tomcat XSS in example webapps tomcat XSS in example webapps tomcat directory traversal tomcat accept-language xss flaw tomcat anonymous cipher issue&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2007:0326</guid>
    </item>
  </channel>
</rss>
