<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 14:58:03 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0556 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0556</link>
      <description>certfr-2026-avi-0556</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0556</guid>
    </item>
    <item>
      <title>cnvd-2018-09566</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-09566</link>
      <description>cnvd-2018-09566</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-09566</guid>
    </item>
    <item>
      <title>EUVD-2026-176609</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-176609</link>
      <description>EUVD-2026-176609</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-176609</guid>
    </item>
    <item>
      <title>fkie_cve-2017-15691</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-15691</link>
      <description>&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-15691</guid>
    </item>
    <item>
      <title>GHSA-wp2f-hrg2-3r5m — Improper Restriction of XML External Entity Reference in  Apache uimaj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wp2f-hrg2-3r5m</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.uima:uimafit-core, Maven: org.apache.uima:uimaj-core, Maven: org.apache.uima:uimaj-as-core&lt;/p&gt;
&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.uima:uimafit-core, Maven: org.apache.uima:uimaj-core, Maven: org.apache.uima:uimaj-as-core&lt;/p&gt;
&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wp2f-hrg2-3r5m</guid>
    </item>
    <item>
      <title>gsd-2017-15691</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-15691</link>
      <description>gsd-2017-15691</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-15691</guid>
    </item>
    <item>
      <title>RHSA-2019:1545 — Red Hat Security Advisory: Red Hat Fuse 7.3.1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2019:1545</link>
      <description>&lt;p&gt;bsh2: remote code execution via deserialization log4j: Socket receiver deserialization vulnerability uima: XML external entity expansion (XXE) can allow attackers to execute arbitrary code mysql-connector-java: Connector/J unspecified vulnerability (CPU October 2018) thrift: Improper Access Control grants access to files outside the  webservers docroot path log4j: deserialization of untrusted data in SocketServer&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;bsh2: remote code execution via deserialization log4j: Socket receiver deserialization vulnerability uima: XML external entity expansion (XXE) can allow attackers to execute arbitrary code mysql-connector-java: Connector/J unspecified vulnerability (CPU October 2018) thrift: Improper Access Control grants access to files outside the  webservers docroot path log4j: deserialization of untrusted data in SocketServer&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2019:1545</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-15691</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-15691</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: uimaj, Ubuntu:18.04:LTS: uimaj&lt;/p&gt;
&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: uimaj, Ubuntu:18.04:LTS: uimaj&lt;/p&gt;
&lt;p&gt;In Apache uimaj prior to 2.10.2, Apache uimaj 3.0.0-xxx prior to 3.0.0-beta, Apache uima-as prior to 2.10.2, Apache uimaFIT prior to 2.4.0, Apache uimaDUCC prior to 2.2.2, this vulnerability relates to an XML external entity expansion (XXE) capability of various XML parsers. UIMA as part of its configuration and operation may read XML from various sources, which could be tainted in ways to cause inadvertent disclosure of local files or other internal content.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-15691</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3531 — IBM FileNet Content Manager (Apache uimaj): Schwachstelle ermöglicht Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3531</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in IBM FileNet Content Manager ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in IBM FileNet Content Manager ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3531</guid>
    </item>
  </channel>
</rss>
