<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:57:46 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-00142</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-00142</link>
      <description>bdu:2018-00142</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-00142</guid>
    </item>
    <item>
      <title>EUVD-2026-96622</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-96622</link>
      <description>EUVD-2026-96622</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-96622</guid>
    </item>
    <item>
      <title>fkie_cve-2014-0073</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-0073</link>
      <description>&lt;p&gt;The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-0073</guid>
    </item>
    <item>
      <title>GHSA-5f44-2f3g-gf6q</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5f44-2f3g-gf6q</link>
      <description>&lt;p&gt;The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CDVInAppBrowser class in the Apache Cordova In-App-Browser standalone plugin (org.apache.cordova.inappbrowser) before 0.3.2 for iOS and the In-App-Browser plugin for iOS from Cordova 2.6.0 through 2.9.0 does not properly validate callback identifiers, which allows remote attackers to execute arbitrary JavaScript in the host page and consequently gain privileges via a crafted gap-iab: URI.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5f44-2f3g-gf6q</guid>
    </item>
    <item>
      <title>gsd-2014-0073</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-0073</link>
      <description>gsd-2014-0073</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-0073</guid>
    </item>
  </channel>
</rss>
