<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:34:15 +0000</lastBuildDate>
    <item>
      <title>bdu:2016-00613</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2016-00613</link>
      <description>bdu:2016-00613</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2016-00613</guid>
    </item>
    <item>
      <title>certfr-2016-avi-350 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Oracle Linux and Virtualization&lt;/span&gt;. Certain…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2016-avi-350</link>
      <description>certfr-2016-avi-350</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2016-avi-350</guid>
    </item>
    <item>
      <title>cnvd-2016-01325</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-01325</link>
      <description>cnvd-2016-01325</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-01325</guid>
    </item>
    <item>
      <title>EUVD-2026-93330</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-93330</link>
      <description>EUVD-2026-93330</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-93330</guid>
    </item>
    <item>
      <title>fkie_cve-2015-5351</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-5351</link>
      <description>&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-5351</guid>
    </item>
    <item>
      <title>GHSA-w7cg-5969-678w — Apache Tomcat allows remote attackers to bypass a CSRF protection mechanism by using a token</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-w7cg-5969-678w</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-w7cg-5969-678w</guid>
    </item>
    <item>
      <title>gsd-2015-5351</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-5351</link>
      <description>gsd-2015-5351</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-5351</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10446-1 — tomcat-8.0.36-3.3 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10446-1</link>
      <description>&lt;p&gt;tomcat-8.0.36-3.3 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat-8.0.36-3.3 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10446-1</guid>
    </item>
    <item>
      <title>RHSA-2016:1087 — Red Hat Security Advisory: Red Hat JBoss Web Server 3.0.3 update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2016:1087</link>
      <description>&lt;p&gt;tomcat: directory disclosure tomcat: Session fixation tomcat: CSRF token leak tomcat: security manager bypass via StatusManagerServlet tomcat: Security Manager bypass via persistence mechanisms tomcat: security manager bypass via setGlobalContext()&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat: directory disclosure tomcat: Session fixation tomcat: CSRF token leak tomcat: security manager bypass via StatusManagerServlet tomcat: Security Manager bypass via persistence mechanisms tomcat: security manager bypass via setGlobalContext()&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2016:1087</guid>
    </item>
    <item>
      <title>SUSE-SU-2016:0769-1 — Security update for tomcat</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2016:0769-1</link>
      <description>&lt;p&gt;Security update for tomcat&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for tomcat&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2016:0769-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2015-5351</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5351</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: tomcat6, Ubuntu:14.04:LTS: tomcat7&lt;/p&gt;
&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: tomcat6, Ubuntu:14.04:LTS: tomcat7&lt;/p&gt;
&lt;p&gt;The (1) Manager and (2) Host Manager applications in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 establish sessions and send CSRF tokens for arbitrary new requests, which allows remote attackers to bypass a CSRF protection mechanism by using a token.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-5351</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1277 — Oracle Fusion Middleware: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1277</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1277</guid>
    </item>
  </channel>
</rss>
