<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:15:29 +0000</lastBuildDate>
    <item>
      <title>cnvd-2016-08455</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-08455</link>
      <description>cnvd-2016-08455</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-08455</guid>
    </item>
    <item>
      <title>EUVD-2026-84878</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-84878</link>
      <description>EUVD-2026-84878</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-84878</guid>
    </item>
    <item>
      <title>fkie_cve-2016-4978</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-4978</link>
      <description>&lt;p&gt;The getObject method of the javax.jms.ObjectMessage class in the (1) JMS Core client, (2) Artemis broker, and (3) Artemis REST component in Apache ActiveMQ Artemis before 1.4.0 might allow remote authenticated users with permission to send messages to the Artemis broker to deserialize arbitrary objects and execute arbitrary code by leveraging gadget classes being present on the Artemis classpath.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The getObject method of the javax.jms.ObjectMessage class in the (1) JMS Core client, (2) Artemis broker, and (3) Artemis REST component in Apache ActiveMQ Artemis before 1.4.0 might allow remote authenticated users with permission to send messages to the Artemis broker to deserialize arbitrary objects and execute arbitrary code by leveraging gadget classes being present on the Artemis classpath.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-4978</guid>
    </item>
    <item>
      <title>GHSA-r9vv-xj4w-g8m8 — Apache ActiveMQ Artemis RCE Via Deserialization Gadget Chain</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-r9vv-xj4w-g8m8</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.activemq:artemis-pom&lt;/p&gt;
&lt;p&gt;The getObject method of the `javax.jms.ObjectMessage` class in the (1) JMS Core client, (2) Artemis broker, and (3) Artemis REST component in Apache ActiveMQ Artemis before 1.4.0 might allow remote authenticated users with permission to send messages to the Artemis broker to deserialize arbitrary objects and execute arbitrary code by leveraging gadget classes being present on the Artemis classpath.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.activemq:artemis-pom&lt;/p&gt;
&lt;p&gt;The getObject method of the `javax.jms.ObjectMessage` class in the (1) JMS Core client, (2) Artemis broker, and (3) Artemis REST component in Apache ActiveMQ Artemis before 1.4.0 might allow remote authenticated users with permission to send messages to the Artemis broker to deserialize arbitrary objects and execute arbitrary code by leveraging gadget classes being present on the Artemis classpath.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-r9vv-xj4w-g8m8</guid>
    </item>
    <item>
      <title>gsd-2016-4978</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-4978</link>
      <description>gsd-2016-4978</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-4978</guid>
    </item>
    <item>
      <title>RHSA-2017:1834 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.0.7 on RHEL 6</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:1834</link>
      <description>&lt;p&gt;Artemis: Deserialization of untrusted input vulnerability jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Artemis: Deserialization of untrusted input vulnerability jackson-databind: Deserialization vulnerability via readValue method of ObjectMapper&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:1834</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2752 — Red Hat JBoss Enterprise Application Platform: Mehrere Schwachstellen ermöglichen Ausführen von beliebigem Programmcode…</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2752</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Red Hat JBoss Enterprise Application Platform ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Red Hat JBoss Enterprise Application Platform ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2752</guid>
    </item>
  </channel>
</rss>
