<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 04:51:51 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-182243</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-182243</link>
      <description>EUVD-2026-182243</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-182243</guid>
    </item>
    <item>
      <title>fkie_cve-2010-2086</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2010-2086</link>
      <description>&lt;p&gt;Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2010-2086</guid>
    </item>
    <item>
      <title>GHSA-92cv-wv2c-8899 — Apache MyFaces Cross-site Scripting vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-92cv-wv2c-8899</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.myfaces.core:myfaces-core-module&lt;/p&gt;
&lt;p&gt;Apache MyFaces 1.1.7 and 1.2.8 (All previous versions are likely vulnerable), as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.myfaces.core:myfaces-core-module&lt;/p&gt;
&lt;p&gt;Apache MyFaces 1.1.7 and 1.2.8 (All previous versions are likely vulnerable), as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary Expression Language (EL) statements via vectors that involve modifying the serialized view object.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-92cv-wv2c-8899</guid>
    </item>
    <item>
      <title>gsd-2010-2086</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2010-2086</link>
      <description>gsd-2010-2086</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2010-2086</guid>
    </item>
    <item>
      <title>RHSA-2010:0119 — Red Hat Security Advisory: JBoss Enterprise Web Server 1.0.1 update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2010:0119</link>
      <description>&lt;p&gt;tomcat: unexpected file deletion and/or alteration tomcat: unexpected file deletion in work directory TLS: MITM attacks via session renegotiation MyFaces: XSS via state view&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat: unexpected file deletion and/or alteration tomcat: unexpected file deletion in work directory TLS: MITM attacks via session renegotiation MyFaces: XSS via state view&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2010:0119</guid>
    </item>
  </channel>
</rss>
