<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:24:42 +0000</lastBuildDate>
    <item>
      <title>certa-2011-avi-485 — Une vulnérabilité dans Apache Tomcat permet à un utilisateur malveillant
de contourner la politique de sécurité et de p…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2011-avi-485</link>
      <description>certa-2011-avi-485</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2011-avi-485</guid>
    </item>
    <item>
      <title>EUVD-2026-116109</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-116109</link>
      <description>EUVD-2026-116109</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-116109</guid>
    </item>
    <item>
      <title>fkie_cve-2011-3190</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2011-3190</link>
      <description>&lt;p&gt;Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information by causing the connector to interpret a request body as a new request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information by causing the connector to interpret a request body as a new request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2011-3190</guid>
    </item>
    <item>
      <title>GHSA-c38m-v4m2-524v — Apache Tomcat Allows Remote Attackers to Spoof AJP Requests</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c38m-v4m2-524v</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information by causing the connector to interpret a request body as a new request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Certain AJP protocol connector implementations in Apache Tomcat 7.0.0 through 7.0.20, 6.0.0 through 6.0.33, 5.5.0 through 5.5.33, and possibly other versions allow remote attackers to spoof AJP requests, bypass authentication, and obtain sensitive information by causing the connector to interpret a request body as a new request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c38m-v4m2-524v</guid>
    </item>
    <item>
      <title>gsd-2011-3190</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2011-3190</link>
      <description>gsd-2011-3190</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2011-3190</guid>
    </item>
    <item>
      <title>RHSA-2011:1780 — Red Hat Security Advisory: tomcat6 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2011:1780</link>
      <description>&lt;p&gt;tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: password disclosure vulnerability tomcat: security manager restrictions bypass tomcat: authentication bypass and information disclosure tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: password disclosure vulnerability tomcat: security manager restrictions bypass tomcat: authentication bypass and information disclosure tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2011:1780</guid>
    </item>
  </channel>
</rss>
