<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:31:35 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-00774</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-00774</link>
      <description>bdu:2021-00774</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-00774</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2020-11979 — CVE-2020-11979 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2020-11979</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2020-11979</guid>
    </item>
    <item>
      <title>BIT-gradle-2020-11979</title>
      <link>https://cve.radiocsirt.org/vuln/bit-gradle-2020-11979</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gradle&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: gradle&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-gradle-2020-11979</guid>
    </item>
    <item>
      <title>certfr-2022-avi-367 — De multiples vulnérabilités ont été découvertes dans Oracle Systems.
Certaines d'entre elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-367</link>
      <description>certfr-2022-avi-367</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-367</guid>
    </item>
    <item>
      <title>CLEANSTART-2025-TN67221 — As mitigation for CVE-2020-1945 Apache Ant 1</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2025-tn67221</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: apache-ant&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the apache-ant package. As mitigation for CVE-2020-1945 Apache Ant 1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: apache-ant&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the apache-ant package. As mitigation for CVE-2020-1945 Apache Ant 1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2025-tn67221</guid>
    </item>
    <item>
      <title>EUVD-2026-41002</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-41002</link>
      <description>EUVD-2026-41002</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-41002</guid>
    </item>
    <item>
      <title>fkie_cve-2020-11979</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-11979</link>
      <description>&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-11979</guid>
    </item>
    <item>
      <title>GHSA-f62v-xpxf-3v68 — Code injection in Apache Ant</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f62v-xpxf-3v68</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.ant:ant&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.ant:ant&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f62v-xpxf-3v68</guid>
    </item>
    <item>
      <title>gsd-2020-11979</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-11979</link>
      <description>gsd-2020-11979</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-11979</guid>
    </item>
    <item>
      <title>msrc_CVE-2020-11979 — As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only th…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2020-11979</link>
      <description>msrc_CVE-2020-11979</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2020-11979</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10616-1 — ant-1.10.10-1.2 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10616-1</link>
      <description>&lt;p&gt;ant-1.10.10-1.2 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ant-1.10.10-1.2 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10616-1</guid>
    </item>
    <item>
      <title>RHSA-2021:0423 — Red Hat Security Advisory: OpenShift Container Platform 4.6.17 security and packages update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:0423</link>
      <description>&lt;p&gt;ant: insecure temporary file vulnerability ant: insecure temporary file jenkins: Arbitrary file read vulnerability in workspace browsers jenkins: XSS vulnerability in notification bar jenkins: Improper handling of REST API XML deserialization errors jenkins: Path traversal vulnerability in agent names jenkins: Arbitrary file existence check in file fingerprints jenkins: Excessive memory allocation in graph URLs leads to denial of service jenkins: Stored XSS vulnerability in button labels jenkins: Missing permission check for paths with specific prefix jenkins: Reflected XSS vulnerability in markup formatter preview jenkins: Stored XSS vulnerability on new item page jenkins: Filesystem traversal by privileged users&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ant: insecure temporary file vulnerability ant: insecure temporary file jenkins: Arbitrary file read vulnerability in workspace browsers jenkins: XSS vulnerability in notification bar jenkins: Improper handling of REST API XML deserialization errors jenkins: Path traversal vulnerability in agent names jenkins: Arbitrary file existence check in file fingerprints jenkins: Excessive memory allocation in graph URLs leads to denial of service jenkins: Stored XSS vulnerability in button labels jenkins: Missing permission check for paths with specific prefix jenkins: Reflected XSS vulnerability in markup formatter preview jenkins: Stored XSS vulnerability on new item page jenkins: Filesystem traversal by privileged users&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:0423</guid>
    </item>
    <item>
      <title>SUSE-SU-2022:4022-1 — Security update for ant</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2022:4022-1</link>
      <description>&lt;p&gt;Security update for ant&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ant&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2022:4022-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-11979</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11979</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: ant, Ubuntu:Pro:16.04:LTS: ant, Ubuntu:Pro:18.04:LTS: ant, Ubuntu:Pro:20.04:LTS: ant&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: ant, Ubuntu:Pro:16.04:LTS: ant, Ubuntu:Pro:18.04:LTS: ant, Ubuntu:Pro:20.04:LTS: ant&lt;/p&gt;
&lt;p&gt;As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them. Unfortunately the fixcrlf task deleted the temporary file and created a new one without said protection, effectively nullifying the effort. This would still allow an attacker to inject modified source files into the build process.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11979</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0119 — Oracle Utilities Applications: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0119</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Utilities Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Utilities Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0119</guid>
    </item>
  </channel>
</rss>
