<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:07:40 +0000</lastBuildDate>
    <item>
      <title>bdu:2019-01880</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2019-01880</link>
      <description>bdu:2019-01880</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2019-01880</guid>
    </item>
    <item>
      <title>certfr-2020-avi-420 — De multiples vulnérabilités ont été découvertes dans les produits
Juniper. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-420</link>
      <description>certfr-2020-avi-420</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-420</guid>
    </item>
    <item>
      <title>EUVD-2026-201733</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-201733</link>
      <description>EUVD-2026-201733</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-201733</guid>
    </item>
    <item>
      <title>fkie_cve-2018-1000613</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000613</link>
      <description>&lt;p&gt;Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application. This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application. This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-1000613</guid>
    </item>
    <item>
      <title>GHSA-4446-656p-f54g — Deserialization of Untrusted Data in Bouncy castle</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4446-656p-f54g</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.bouncycastle:bcprov-jdk15on&lt;/p&gt;
&lt;p&gt;Legion of the Bouncy Castle Java Cryptography APIs starting in version 1.57 and prior to version 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application.&lt;/p&gt;
&lt;p&gt;This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.bouncycastle:bcprov-jdk15on&lt;/p&gt;
&lt;p&gt;Legion of the Bouncy Castle Java Cryptography APIs starting in version 1.57 and prior to version 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application.&lt;/p&gt;
&lt;p&gt;This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4446-656p-f54g</guid>
    </item>
    <item>
      <title>gsd-2018-1000613</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-1000613</link>
      <description>gsd-2018-1000613</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-1000613</guid>
    </item>
    <item>
      <title>jvndb-2018-008573</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2018-008573</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been found in Hitachi Infrastructure Analytics Advisor.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been found in Hitachi Infrastructure Analytics Advisor.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2018-008573</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:0607-1 — Security update for bouncycastle</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0607-1</link>
      <description>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for bouncycastle&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:0607-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2018-1000613</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1000613</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application. This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:18.04:LTS: bouncycastle&lt;/p&gt;
&lt;p&gt;Legion of the Bouncy Castle Legion of the Bouncy Castle Java Cryptography APIs 1.58 up to but not including 1.60 contains a CWE-470: Use of Externally-Controlled Input to Select Classes or Code (&amp;#39;Unsafe Reflection&amp;#39;) vulnerability in XMSS/XMSS^MT private key deserialization that can result in Deserializing an XMSS/XMSS^MT private key can result in the execution of unexpected code. This attack appear to be exploitable via A handcrafted private key can include references to unexpected classes which will be picked up from the class path for the executing application. This vulnerability appears to have been fixed in 1.60 and later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1000613</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1682 — Oracle Retail Applications: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1682</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle Retail Applications ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle Retail Applications ausnutzen, um dadurch die Integrität, Vertraulichkeit und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1682</guid>
    </item>
  </channel>
</rss>
