<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 09:17:23 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-767 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-767</link>
      <description>certfr-2022-avi-767</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-767</guid>
    </item>
    <item>
      <title>cnvd-2017-32132</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-32132</link>
      <description>cnvd-2017-32132</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-32132</guid>
    </item>
    <item>
      <title>EUVD-2026-80761</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-80761</link>
      <description>EUVD-2026-80761</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-80761</guid>
    </item>
    <item>
      <title>fkie_cve-2017-1000048</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-1000048</link>
      <description>&lt;p&gt;the web framework using ljharb&amp;#39;s qs module older than v6.3.2, v6.2.3, v6.1.2, and v6.0.4 is vulnerable to a DoS. A malicious user can send a evil request to cause the web framework crash.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;the web framework using ljharb&amp;#39;s qs module older than v6.3.2, v6.2.3, v6.1.2, and v6.0.4 is vulnerable to a DoS. A malicious user can send a evil request to cause the web framework crash.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-1000048</guid>
    </item>
    <item>
      <title>GHSA-gqgv-6jq5-jjj9 — Prototype Pollution Protection Bypass in qs</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gqgv-6jq5-jjj9</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: qs&lt;/p&gt;
&lt;p&gt;Affected version of `qs` are vulnerable to Prototype Pollution because it is possible to bypass the protection. The `qs.parse` function fails to properly prevent an object&amp;#39;s prototype to be altered when parsing arbitrary input. Input containing `[` or `]` may bypass the prototype pollution protection and alter the Object prototype. This allows attackers to override properties that will exist in all objects, which may lead to Denial of Service or Remote Code Execution in specific circumstances.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Upgrade to 6.0.4, 6.1.2, 6.2.3, 6.3.2 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: qs&lt;/p&gt;
&lt;p&gt;Affected version of `qs` are vulnerable to Prototype Pollution because it is possible to bypass the protection. The `qs.parse` function fails to properly prevent an object&amp;#39;s prototype to be altered when parsing arbitrary input. Input containing `[` or `]` may bypass the prototype pollution protection and alter the Object prototype. This allows attackers to override properties that will exist in all objects, which may lead to Denial of Service or Remote Code Execution in specific circumstances.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Upgrade to 6.0.4, 6.1.2, 6.2.3, 6.3.2 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gqgv-6jq5-jjj9</guid>
    </item>
    <item>
      <title>gsd-2017-1000048</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-1000048</link>
      <description>gsd-2017-1000048</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-1000048</guid>
    </item>
    <item>
      <title>RHSA-2017:2672 — Red Hat Security Advisory: rh-nodejs6-nodejs-qs security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:2672</link>
      <description>&lt;p&gt;nodejs-qs: Prototype override protection bypass&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nodejs-qs: Prototype override protection bypass&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:2672</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1591 — Juniper JUNOS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1591</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper JUNOS ausnutzen, um einen Denial of Service  zu verursachen, Informationen offenzulegen, Privilegien zu erweitern und Sicherheitsmechanismen inklusive zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Juniper JUNOS ausnutzen, um einen Denial of Service  zu verursachen, Informationen offenzulegen, Privilegien zu erweitern und Sicherheitsmechanismen inklusive zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1591</guid>
    </item>
  </channel>
</rss>
