<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:57:26 +0000</lastBuildDate>
    <item>
      <title>certa-2009-ale-014 — De multiples vulnérabilités conduisant, entre autres, à une exécution de
code arbitraire à distance ont été découvertes…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-ale-014</link>
      <description>certa-2009-ale-014</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-ale-014</guid>
    </item>
    <item>
      <title>certa-2009-avi-157 — Plusieurs vulnérabilités ont été identifiées dans le navigateur Mozilla
Firefox. L'exploitation de celles-ci peut avoir…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-157</link>
      <description>certa-2009-avi-157</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-157</guid>
    </item>
    <item>
      <title>EUVD-2026-122339</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-122339</link>
      <description>EUVD-2026-122339</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-122339</guid>
    </item>
    <item>
      <title>fkie_cve-2009-1309</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2009-1309</link>
      <description>&lt;p&gt;Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document&amp;#39;s principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote attackers to conduct cross-site scripting (XSS) attacks and possibly other attacks via a crafted document.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document&amp;#39;s principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote attackers to conduct cross-site scripting (XSS) attacks and possibly other attacks via a crafted document.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2009-1309</guid>
    </item>
    <item>
      <title>GHSA-g3r3-3vcq-q6hc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g3r3-3vcq-q6hc</link>
      <description>&lt;p&gt;Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document&amp;#39;s principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote attackers to conduct cross-site scripting (XSS) attacks and possibly other attacks via a crafted document.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document&amp;#39;s principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote attackers to conduct cross-site scripting (XSS) attacks and possibly other attacks via a crafted document.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g3r3-3vcq-q6hc</guid>
    </item>
    <item>
      <title>gsd-2009-1309</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2009-1309</link>
      <description>gsd-2009-1309</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2009-1309</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</link>
      <description>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</guid>
    </item>
    <item>
      <title>RHSA-2009:0436 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2009:0436</link>
      <description>&lt;p&gt;firefox: does not properly prevent the literal rendering of homoglyph characters in IDN domain names (spoof URLs and conduct phishing attacks) Firefox 3 Layout engine crashes Firefox 2 and 3 Layout engine crash Firefox 3 JavaScript engine crashes Firefox 2 and 3 JavaScript engine crash jar: scheme ignores the content-disposition: header on the inner URI view-source: protocol Firefox XSS hazard using third-party stylesheets and XBL bindings Firefox Same-origin violations in XMLHttpRequest and XPCNativeWrapper.toString Firefox Malicious search plugins can inject code into arbitrary sites Firefox POST data sent to wrong site when saving web page with embedded frame javascript: URIs&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;firefox: does not properly prevent the literal rendering of homoglyph characters in IDN domain names (spoof URLs and conduct phishing attacks) Firefox 3 Layout engine crashes Firefox 2 and 3 Layout engine crash Firefox 3 JavaScript engine crashes Firefox 2 and 3 JavaScript engine crash jar: scheme ignores the content-disposition: header on the inner URI view-source: protocol Firefox XSS hazard using third-party stylesheets and XBL bindings Firefox Same-origin violations in XMLHttpRequest and XPCNativeWrapper.toString Firefox Malicious search plugins can inject code into arbitrary sites Firefox POST data sent to wrong site when saving web page with embedded frame javascript: URIs&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2009:0436</guid>
    </item>
  </channel>
</rss>
