<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:04:51 +0000</lastBuildDate>
    <item>
      <title>cnvd-2017-07133</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-07133</link>
      <description>cnvd-2017-07133</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-07133</guid>
    </item>
    <item>
      <title>EUVD-2026-74713</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-74713</link>
      <description>EUVD-2026-74713</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-74713</guid>
    </item>
    <item>
      <title>fkie_cve-2017-7465</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-7465</link>
      <description>&lt;p&gt;It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing a transform in JAXP requires the use of a &amp;#39;javax.xml.transform.TransformerFactory&amp;#39;. If the FEATURE_SECURE_PROCESSING feature is set to &amp;#39;true&amp;#39;, it mitigates this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing a transform in JAXP requires the use of a &amp;#39;javax.xml.transform.TransformerFactory&amp;#39;. If the FEATURE_SECURE_PROCESSING feature is set to &amp;#39;true&amp;#39;, it mitigates this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-7465</guid>
    </item>
    <item>
      <title>GHSA-x996-h3mp-c4p4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x996-h3mp-c4p4</link>
      <description>&lt;p&gt;It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing a transform in JAXP requires the use of a &amp;#39;javax.xml.transform.TransformerFactory&amp;#39;. If the FEATURE_SECURE_PROCESSING feature is set to &amp;#39;true&amp;#39;, it mitigates this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found that the JAXP implementation used in JBoss EAP 7.0 for XSLT processing is vulnerable to code injection. An attacker could use this flaw to cause remote code execution if they are able to provide XSLT content for parsing. Doing a transform in JAXP requires the use of a &amp;#39;javax.xml.transform.TransformerFactory&amp;#39;. If the FEATURE_SECURE_PROCESSING feature is set to &amp;#39;true&amp;#39;, it mitigates this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x996-h3mp-c4p4</guid>
    </item>
    <item>
      <title>gsd-2017-7465</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-7465</link>
      <description>gsd-2017-7465</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-7465</guid>
    </item>
    <item>
      <title>RHSA-2020:2563 — Red Hat Security Advisory: EAP Continuous Delivery Technical Preview Release 14 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:2563</link>
      <description>&lt;p&gt;JBoss: JAXP in EAP 7.0 allows RCE via XSL EAP: XXE issue in TransformerFactory&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;JBoss: JAXP in EAP 7.0 allows RCE via XSL EAP: XXE issue in TransformerFactory&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:2563</guid>
    </item>
  </channel>
</rss>
