<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 04:52:38 +0000</lastBuildDate>
    <item>
      <title>cnvd-2018-16268</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-16268</link>
      <description>cnvd-2018-16268</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-16268</guid>
    </item>
    <item>
      <title>EUVD-2026-71169</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-71169</link>
      <description>EUVD-2026-71169</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-71169</guid>
    </item>
    <item>
      <title>fkie_cve-2018-1000518</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000518</link>
      <description>&lt;p&gt;aaugustin websockets version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appear to be exploitable via Sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in 5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;aaugustin websockets version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appear to be exploitable via Sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in 5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000518</guid>
    </item>
    <item>
      <title>GHSA-6g87-ff9q-v847 — websockets is vulnerable to denial of service by memory exhaustion</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6g87-ff9q-v847</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: websockets&lt;/p&gt;
&lt;p&gt;The Python websockets library version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appears to be exploitable via sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in version 5.0&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: websockets&lt;/p&gt;
&lt;p&gt;The Python websockets library version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appears to be exploitable via sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in version 5.0&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6g87-ff9q-v847</guid>
    </item>
    <item>
      <title>gsd-2018-1000518</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-1000518</link>
      <description>gsd-2018-1000518</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-1000518</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:11280-1 — python36-websockets-9.1-2.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11280-1</link>
      <description>&lt;p&gt;python36-websockets-9.1-2.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;python36-websockets-9.1-2.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:11280-1</guid>
    </item>
    <item>
      <title>PYSEC-2018-79</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2018-79</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: websockets&lt;/p&gt;
&lt;p&gt;aaugustin websockets version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appear to be exploitable via Sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in 5.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: websockets&lt;/p&gt;
&lt;p&gt;aaugustin websockets version 4 contains a CWE-409: Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Servers and clients, unless configured with compression=None that can result in Denial of Service by memory exhaustion. This attack appear to be exploitable via Sending a specially crafted frame on an established connection. This vulnerability appears to have been fixed in 5.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2018-79</guid>
    </item>
    <item>
      <title>SUSE-SU-2023:2783-2 — Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcry…</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2023:2783-2</link>
      <description>&lt;p&gt;Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for grpc, protobuf, python-Deprecated, python-PyGithub, python-aiocontextvars, python-avro, python-bcrypt, python-cryptography, python-cryptography-vectors, python-google-api-core, python-googleapis-common-protos, python-grpcio-gcp, python-humanfriendly, python-jsondiff, python-knack, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-psutil, python-pytest-asyncio, python-requests, python-websocket-client, python-websockets&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2023:2783-2</guid>
    </item>
  </channel>
</rss>
