<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 07:45:30 +0000</lastBuildDate>
    <item>
      <title>cnvd-2015-06599</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2015-06599</link>
      <description>cnvd-2015-06599</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2015-06599</guid>
    </item>
    <item>
      <title>EUVD-2026-93248</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-93248</link>
      <description>EUVD-2026-93248</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-93248</guid>
    </item>
    <item>
      <title>fkie_cve-2015-5234</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-5234</link>
      <description>&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-5234</guid>
    </item>
    <item>
      <title>GHSA-vjh2-cm2h-354g</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vjh2-cm2h-354g</link>
      <description>&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vjh2-cm2h-354g</guid>
    </item>
    <item>
      <title>gsd-2015-5234</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-5234</link>
      <description>gsd-2015-5234</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-5234</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10316-1 — icedtea-web-javadoc-1.6.2-3.3 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10316-1</link>
      <description>&lt;p&gt;icedtea-web-javadoc-1.6.2-3.3 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;icedtea-web-javadoc-1.6.2-3.3 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10316-1</guid>
    </item>
    <item>
      <title>RHBA-2015:2457 — Red Hat Bug Fix Advisory: icedtea-web bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhba-2015:2457</link>
      <description>&lt;p&gt;icedtea-web: unexpected permanent authorization of unsigned applets icedtea-web: applet origin spoofing&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;icedtea-web: unexpected permanent authorization of unsigned applets icedtea-web: applet origin spoofing&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhba-2015:2457</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:1682-1 — Security update for icedtea-web</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:1682-1</link>
      <description>&lt;p&gt;Security update for icedtea-web&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for icedtea-web&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:1682-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2015-5234</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5234</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: icedtea-web&lt;/p&gt;
&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: icedtea-web&lt;/p&gt;
&lt;p&gt;IcedTea-Web before 1.5.3 and 1.6.x before 1.6.1 does not properly sanitize applet URLs, which allows remote attackers to inject applets into the .appletTrustSettings configuration file and bypass user approval to execute the applet via a crafted web page, possibly related to line breaks.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5234</guid>
    </item>
  </channel>
</rss>
