<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:15:03 +0000</lastBuildDate>
    <item>
      <title>certfr-2017-avi-370 — De multiples vulnérabilités ont été découvertes dans Oracle Database
Server. Elles permettent à un attaquant de provoqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2017-avi-370</link>
      <description>certfr-2017-avi-370</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2017-avi-370</guid>
    </item>
    <item>
      <title>cnvd-2017-00746</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-00746</link>
      <description>cnvd-2017-00746</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-00746</guid>
    </item>
    <item>
      <title>EUVD-2026-172615</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-172615</link>
      <description>EUVD-2026-172615</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-172615</guid>
    </item>
    <item>
      <title>fkie_cve-2016-6814</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-6814</link>
      <description>&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-6814</guid>
    </item>
    <item>
      <title>GHSA-xphj-m9cc-8fmq — Deserialization of Untrusted Data in Groovy</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xphj-m9cc-8fmq</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.codehaus.groovy:groovy, Maven: org.codehaus.groovy:groovy-all&lt;/p&gt;
&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.codehaus.groovy:groovy, Maven: org.codehaus.groovy:groovy-all&lt;/p&gt;
&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xphj-m9cc-8fmq</guid>
    </item>
    <item>
      <title>gsd-2016-6814</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-6814</link>
      <description>gsd-2016-6814</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-6814</guid>
    </item>
    <item>
      <title>RHSA-2017:0272 — Red Hat Security Advisory: Red Hat JBoss Data Virtualization security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:0272</link>
      <description>&lt;p&gt;pdfbox: XML External Entity vulnerability tika: XML External Entity vulnerability Groovy: Remote code execution via deserialization&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;pdfbox: XML External Entity vulnerability tika: XML External Entity vulnerability Groovy: Remote code execution via deserialization&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:0272</guid>
    </item>
    <item>
      <title>RHSA-2017:2486 — Red Hat Security Advisory: groovy security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:2486</link>
      <description>&lt;p&gt;groovy: remote execution of untrusted code in class MethodClosure Groovy: Remote code execution via deserialization&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;groovy: remote execution of untrusted code in class MethodClosure Groovy: Remote code execution via deserialization&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:2486</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2016-6814</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6814</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: groovy2, Ubuntu:16.04:LTS: groovy&lt;/p&gt;
&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: groovy2, Ubuntu:16.04:LTS: groovy&lt;/p&gt;
&lt;p&gt;When an application with unsupported Codehaus versions of Groovy from 1.7.0 to 2.4.3, Apache Groovy 2.4.4 to 2.4.7 on classpath uses standard Java serialization mechanisms, e.g. to communicate between servers or to store local data, it was possible for an attacker to bake a special serialized object that will execute code directly when deserialized. All applications which rely on serialization and do not isolate the code which deserializes objects were subject to this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6814</guid>
    </item>
  </channel>
</rss>
