<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 23:54:24 +0000</lastBuildDate>
    <item>
      <title>certfr-2020-avi-448 — De multiples vulnérabilités ont été découvertes dans Mozilla Foundation
Thunderbird. Elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-448</link>
      <description>certfr-2020-avi-448</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-448</guid>
    </item>
    <item>
      <title>cnvd-2020-54922</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-54922</link>
      <description>cnvd-2020-54922</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-54922</guid>
    </item>
    <item>
      <title>EUVD-2026-43076</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-43076</link>
      <description>EUVD-2026-43076</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-43076</guid>
    </item>
    <item>
      <title>fkie_cve-2020-15648</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-15648</link>
      <description>&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-15648</guid>
    </item>
    <item>
      <title>GHSA-jrmg-2w74-rwc9</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jrmg-2w74-rwc9</link>
      <description>&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jrmg-2w74-rwc9</guid>
    </item>
    <item>
      <title>gsd-2020-15648</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-15648</link>
      <description>gsd-2020-15648</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-15648</guid>
    </item>
    <item>
      <title>RHSA-2020:3555 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:3555</link>
      <description>&lt;p&gt;Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process Mozilla: Out of bound read in Date.parse() Mozilla: X-Frame-Options bypass using object or embed tags Mozilla: Bypassing iframe sandbox when allowing popups Mozilla: Custom cursor can overlay user interface Mozilla: Type confusion for special arguments in IonMonkey Mozilla: Overriding file type when saving to disk Mozilla: Attacker-induced prompt for extension installation Mozilla: Use-After-Free when aborting an operation&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process Mozilla: Out of bound read in Date.parse() Mozilla: X-Frame-Options bypass using object or embed tags Mozilla: Bypassing iframe sandbox when allowing popups Mozilla: Custom cursor can overlay user interface Mozilla: Type confusion for special arguments in IonMonkey Mozilla: Overriding file type when saving to disk Mozilla: Attacker-induced prompt for extension installation Mozilla: Use-After-Free when aborting an operation&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:3555</guid>
    </item>
    <item>
      <title>RHSA-2020:3557 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:3557</link>
      <description>&lt;p&gt;Mozilla: Incorrect serialization of nsIPrincipal.origin for IPv6 addresses Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process Mozilla: Out of bound read in Date.parse() Mozilla: X-Frame-Options bypass using object or embed tags Mozilla: Bypassing iframe sandbox when allowing popups Mozilla: Custom cursor can overlay user interface Mozilla: Type confusion for special arguments in IonMonkey Mozilla: Overriding file type when saving to disk Mozilla: Attacker-induced prompt for extension installation Mozilla: Use-After-Free when aborting an operation&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla: Incorrect serialization of nsIPrincipal.origin for IPv6 addresses Mozilla: Integer overflow in nsJPEGEncoder::emptyOutputBuffer Mozilla: WebRTC permission prompt could have been bypassed by a compromised content process Mozilla: Out of bound read in Date.parse() Mozilla: X-Frame-Options bypass using object or embed tags Mozilla: Bypassing iframe sandbox when allowing popups Mozilla: Custom cursor can overlay user interface Mozilla: Type confusion for special arguments in IonMonkey Mozilla: Overriding file type when saving to disk Mozilla: Attacker-induced prompt for extension installation Mozilla: Use-After-Free when aborting an operation&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:3557</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-15648</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15648</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: firefox, Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52&lt;/p&gt;
&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: firefox, Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52&lt;/p&gt;
&lt;p&gt;Using object or embed tags, it was possible to frame other websites, even if they disallowed framing using the X-Frame-Options header. This vulnerability affects Thunderbird &amp;lt; 78 and Firefox &amp;lt; 78.0.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15648</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0457 — Mozilla Firefox/Thunderbird: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0457</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox und Thunderbird ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox und Thunderbird ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0457</guid>
    </item>
  </channel>
</rss>
