<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 21:25:57 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-99364</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-99364</link>
      <description>EUVD-2026-99364</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-99364</guid>
    </item>
    <item>
      <title>fkie_cve-2014-3627</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-3627</link>
      <description>&lt;p&gt;The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-3627</guid>
    </item>
    <item>
      <title>GHSA-jpmf-8cj2-595g — Improper Link Resolution Before File Access in Apache Hadoop</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jpmf-8cj2-595g</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.hadoop:hadoop-client&lt;/p&gt;
&lt;p&gt;The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.hadoop:hadoop-client&lt;/p&gt;
&lt;p&gt;The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jpmf-8cj2-595g</guid>
    </item>
    <item>
      <title>gsd-2014-3627</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-3627</link>
      <description>gsd-2014-3627</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-3627</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2751 — IBM InfoSphere Guardium: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2751</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM InfoSphere Guardium ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM InfoSphere Guardium ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2751</guid>
    </item>
  </channel>
</rss>
