<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:18:52 +0000</lastBuildDate>
    <item>
      <title>bdu:2015-04135</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2015-04135</link>
      <description>bdu:2015-04135</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2015-04135</guid>
    </item>
    <item>
      <title>EUVD-2026-108585</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-108585</link>
      <description>EUVD-2026-108585</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-108585</guid>
    </item>
    <item>
      <title>fkie_cve-2013-6408</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2013-6408</link>
      <description>&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2013-6408</guid>
    </item>
    <item>
      <title>GHSA-45w3-2hvv-pfxq — XML Injection in Apache Solr</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-45w3-2hvv-pfxq</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.solr:solr-core&lt;/p&gt;
&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.solr:solr-core&lt;/p&gt;
&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-45w3-2hvv-pfxq</guid>
    </item>
    <item>
      <title>gsd-2013-6408</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2013-6408</link>
      <description>gsd-2013-6408</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2013-6408</guid>
    </item>
    <item>
      <title>RHSA-2013:1844 — Red Hat Security Advisory: Red Hat JBoss Web Framework Kit 2.4.0 update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2013:1844</link>
      <description>&lt;p&gt;Solr: XML eXternal Entity (XXE) flaw in XML and XSLT UpdateRequestHandler Solr: directory traversal when loading XSL stylesheets and Velocity templates Solr: XML eXternal Entity (XXE) flaw in XML and XSLT UpdateRequestHandler Solr: XML eXternal Entity (XXE) flaw in DocumentAnalysisRequestHandler&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Solr: XML eXternal Entity (XXE) flaw in XML and XSLT UpdateRequestHandler Solr: directory traversal when loading XSL stylesheets and Velocity templates Solr: XML eXternal Entity (XXE) flaw in XML and XSLT UpdateRequestHandler Solr: XML eXternal Entity (XXE) flaw in DocumentAnalysisRequestHandler&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2013:1844</guid>
    </item>
    <item>
      <title>Withdrawn: UBUNTU-CVE-2013-6408</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2013-6408</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: lucene-solr, Ubuntu:16.04:LTS: lucene-solr&lt;/p&gt;
&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: lucene-solr, Ubuntu:16.04:LTS: lucene-solr&lt;/p&gt;
&lt;p&gt;The DocumentAnalysisRequestHandler in Apache Solr before 4.3.1 does not properly use the EmptyEntityResolver, which allows remote attackers to have an unspecified impact via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-6407.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2013-6408</guid>
    </item>
  </channel>
</rss>
