<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 04:46:57 +0000</lastBuildDate>
    <item>
      <title>certfr-2014-ale-008 — Une vulnérabilité a été découverte dans &lt;span
class="textit"&gt;Drupal&lt;/span&gt;. Elle permet à un attaquant de provoquer
une…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2014-ale-008</link>
      <description>certfr-2014-ale-008</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2014-ale-008</guid>
    </item>
    <item>
      <title>certfr-2014-avi-434 — Une vulnérabilité a été corrigée dans &lt;span
class="textit"&gt;Drupal&lt;/span&gt;. Elle permet à un attaquant de provoquer
une i…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2014-avi-434</link>
      <description>certfr-2014-avi-434</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2014-avi-434</guid>
    </item>
    <item>
      <title>EUVD-2026-99409</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-99409</link>
      <description>EUVD-2026-99409</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-99409</guid>
    </item>
    <item>
      <title>fkie_cve-2014-3704</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-3704</link>
      <description>&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-3704</guid>
    </item>
    <item>
      <title>GHSA-f9cm-c972-9975</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f9cm-c972-9975</link>
      <description>&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f9cm-c972-9975</guid>
    </item>
    <item>
      <title>gsd-2014-3704</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-3704</link>
      <description>gsd-2014-3704</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-3704</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2014-3704</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3704</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: drupal7&lt;/p&gt;
&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: drupal7&lt;/p&gt;
&lt;p&gt;The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection attacks via an array containing crafted keys.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3704</guid>
    </item>
  </channel>
</rss>
