<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:40:14 +0000</lastBuildDate>
    <item>
      <title>certa-2009-avi-048 — Plusieurs vulnérabilités affectent Mozilla Firefox et permettent à une
personne malintentionnée de réaliser un grand no…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-048</link>
      <description>certa-2009-avi-048</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-048</guid>
    </item>
    <item>
      <title>EUVD-2026-121504</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-121504</link>
      <description>EUVD-2026-121504</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-121504</guid>
    </item>
    <item>
      <title>fkie_cve-2009-0355</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2009-0355</link>
      <description>&lt;p&gt;components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements to type=&amp;#34;file&amp;#34; during tab restoration, which allows user-assisted remote attackers to read arbitrary files on a client machine via a crafted INPUT element.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements to type=&amp;#34;file&amp;#34; during tab restoration, which allows user-assisted remote attackers to read arbitrary files on a client machine via a crafted INPUT element.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2009-0355</guid>
    </item>
    <item>
      <title>GHSA-h2q7-pj3w-pr6f</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h2q7-pj3w-pr6f</link>
      <description>&lt;p&gt;components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements to type=&amp;#34;file&amp;#34; during tab restoration, which allows user-assisted remote attackers to read arbitrary files on a client machine via a crafted INPUT element.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;components/sessionstore/src/nsSessionStore.js in Mozilla Firefox before 3.0.6 does not block changes of INPUT elements to type=&amp;#34;file&amp;#34; during tab restoration, which allows user-assisted remote attackers to read arbitrary files on a client machine via a crafted INPUT element.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h2q7-pj3w-pr6f</guid>
    </item>
    <item>
      <title>gsd-2009-0355</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2009-0355</link>
      <description>gsd-2009-0355</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2009-0355</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10600-1 — MozillaFirefox-92.0-1.2 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10600-1</link>
      <description>&lt;p&gt;MozillaFirefox-92.0-1.2 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-92.0-1.2 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10600-1</guid>
    </item>
    <item>
      <title>RHSA-2009:0256 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2009:0256</link>
      <description>&lt;p&gt;Firefox layout crashes with evidence of memory corruption Firefox javascript crashes with evidence of memory corruption Firefox XSS using a chrome XBL method and window.eval Firefox local file stealing with SessionStore Firefox Chrome privilege escalation via local .desktop files Firefox XMLHttpRequest allows reading HTTPOnly cookies Firefox directives to not cache pages ignored&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Firefox layout crashes with evidence of memory corruption Firefox javascript crashes with evidence of memory corruption Firefox XSS using a chrome XBL method and window.eval Firefox local file stealing with SessionStore Firefox Chrome privilege escalation via local .desktop files Firefox XMLHttpRequest allows reading HTTPOnly cookies Firefox directives to not cache pages ignored&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2009:0256</guid>
    </item>
  </channel>
</rss>
