<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 15:04:29 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-00721</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-00721</link>
      <description>bdu:2021-00721</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-00721</guid>
    </item>
    <item>
      <title>cnvd-2020-41502</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-41502</link>
      <description>cnvd-2020-41502</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-41502</guid>
    </item>
    <item>
      <title>EUVD-2026-40991</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-40991</link>
      <description>EUVD-2026-40991</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-40991</guid>
    </item>
    <item>
      <title>fkie_cve-2020-11972</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-11972</link>
      <description>&lt;p&gt;Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-11972</guid>
    </item>
    <item>
      <title>GHSA-2x6r-7427-95cm — Deserialization of Untrusted Data in Apache Camel RabbitMQ</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2x6r-7427-95cm</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.camel:camel-rabbitmq&lt;/p&gt;
&lt;p&gt;Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.camel:camel-rabbitmq&lt;/p&gt;
&lt;p&gt;Apache Camel RabbitMQ enables Java deserialization by default. Apache Camel 2.22.x, 2.23.x, 2.24.x, 2.25.0, 3.0.0 up to 3.1.0 are affected. 2.x users should upgrade to 2.25.1, 3.x users should upgrade to 3.2.0.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2x6r-7427-95cm</guid>
    </item>
    <item>
      <title>gsd-2020-11972</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-11972</link>
      <description>gsd-2020-11972</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-11972</guid>
    </item>
    <item>
      <title>RHSA-2020:5568 — Red Hat Security Advisory: Red Hat Fuse 7.8.0 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:5568</link>
      <description>&lt;p&gt;jackson-modules-java8: DoS due to an Improper Input Validation thrift: Endless loop when feed with specific input data thrift: Out-of-bounds read related to TJSONProtocol or TSimpleJSONProtocol mysql-connector-java: privilege escalation in MySQL connector spring-ws: XML External Entity Injection (XXE) when receiving XML data from untrusted sources spring-batch: XML External Entity Injection (XXE) when receiving XML data from untrusted sources codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities hibernate-validator: safeHTML validator allows XSS AngularJS: Prototype pollution in merge function could result in code injection org.eclipse.paho.client.mqttv3: Improper hostname validation in the MQTT library cxf: does not restrict the number of message attachments cxf: OpenId Connect token service does not properly validate the clientId libquartz: XXE attacks via job description hibernate: SQL injection issue in Hibernate ORM batik: SSRF via &amp;#34;xlink:href&amp;#34; jetty: double release of resource can lead to information disclosure Undertow: Memory Leak in Undertow HttpOpenListener due to holding remoting connections indefinitely keycloak: Lack of checks in ObjectInputStream leading to Remote Code Execution Wildfly: EJBContext principal is not popped back after invoking another EJB using a different Security Domain tika: excessive memory usage in PSDParser apache-flink: JMX information disclosure vulnerability springframework: RFD attack via Content-Dispos…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;jackson-modules-java8: DoS due to an Improper Input Validation thrift: Endless loop when feed with specific input data thrift: Out-of-bounds read related to TJSONProtocol or TSimpleJSONProtocol mysql-connector-java: privilege escalation in MySQL connector spring-ws: XML External Entity Injection (XXE) when receiving XML data from untrusted sources spring-batch: XML External Entity Injection (XXE) when receiving XML data from untrusted sources codehaus: incomplete fix for unsafe deserialization in jackson-databind vulnerabilities hibernate-validator: safeHTML validator allows XSS AngularJS: Prototype pollution in merge function could result in code injection org.eclipse.paho.client.mqttv3: Improper hostname validation in the MQTT library cxf: does not restrict the number of message attachments cxf: OpenId Connect token service does not properly validate the clientId libquartz: XXE attacks via job description hibernate: SQL injection issue in Hibernate ORM batik: SSRF via &amp;#34;xlink:href&amp;#34; jetty: double release of resource can lead to information disclosure Undertow: Memory Leak in Undertow HttpOpenListener due to holding remoting connections indefinitely keycloak: Lack of checks in ObjectInputStream leading to Remote Code Execution Wildfly: EJBContext principal is not popped back after invoking another EJB using a different Security Domain tika: excessive memory usage in PSDParser apache-flink: JMX information disclosure vulnerability springframework: RFD attack via Content-Dispos…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:5568</guid>
    </item>
  </channel>
</rss>
