<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:49:27 +0000</lastBuildDate>
    <item>
      <title>certa-2009-avi-459 — De nombreuses vulnérabilités de &lt;span class="textit"&gt;Mozilla
Firefox&lt;/span&gt; ont été publiées. Certaines permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-459</link>
      <description>certa-2009-avi-459</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-459</guid>
    </item>
    <item>
      <title>EUVD-2026-124082</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-124082</link>
      <description>EUVD-2026-124082</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-124082</guid>
    </item>
    <item>
      <title>fkie_cve-2009-3374</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2009-3374</link>
      <description>&lt;p&gt;The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome privileged code and objects obtained from remote web sites, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via unspecified method calls, related to &amp;#34;doubly-wrapped objects.&amp;#34;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome privileged code and objects obtained from remote web sites, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via unspecified method calls, related to &amp;#34;doubly-wrapped objects.&amp;#34;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2009-3374</guid>
    </item>
    <item>
      <title>GHSA-wr76-gg23-hq72</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wr76-gg23-hq72</link>
      <description>&lt;p&gt;The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome privileged code and objects obtained from remote web sites, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via unspecified method calls, related to &amp;#34;doubly-wrapped objects.&amp;#34;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome privileged code and objects obtained from remote web sites, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via unspecified method calls, related to &amp;#34;doubly-wrapped objects.&amp;#34;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wr76-gg23-hq72</guid>
    </item>
    <item>
      <title>gsd-2009-3374</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2009-3374</link>
      <description>gsd-2009-3374</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2009-3374</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10071-1 — MozillaFirefox-50.1.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</link>
      <description>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-50.1.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10071-1</guid>
    </item>
    <item>
      <title>RHSA-2009:1530 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2009:1530</link>
      <description>&lt;p&gt;array index error in dtoa implementation of many products firefox: (rejected CVE-2009-1563) Firefox heap buffer overflow in string to number conversion Firefox: Predictable /tmp pathname use Firefox form history vulnerable to stealing Firefox crash in proxy auto-configuration regexp parsing Firefox heap buffer overflow in GIF color map parser XPCVariant:: VariantDataToJS() Firefox cross-origin data theft through document.getSelection() Firefox download filename spoofing with RTL override Firefox crashes with evidence of memory corruption Firefox crashes with evidence of memory corruption Firefox integer underflow in FTP directory list parser&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;array index error in dtoa implementation of many products firefox: (rejected CVE-2009-1563) Firefox heap buffer overflow in string to number conversion Firefox: Predictable /tmp pathname use Firefox form history vulnerable to stealing Firefox crash in proxy auto-configuration regexp parsing Firefox heap buffer overflow in GIF color map parser XPCVariant:: VariantDataToJS() Firefox cross-origin data theft through document.getSelection() Firefox download filename spoofing with RTL override Firefox crashes with evidence of memory corruption Firefox crashes with evidence of memory corruption Firefox integer underflow in FTP directory list parser&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2009:1530</guid>
    </item>
  </channel>
</rss>
