<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 14:34:54 +0000</lastBuildDate>
    <item>
      <title>cnvd-2020-33503</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-33503</link>
      <description>cnvd-2020-33503</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-33503</guid>
    </item>
    <item>
      <title>EUVD-2026-35629</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-35629</link>
      <description>EUVD-2026-35629</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-35629</guid>
    </item>
    <item>
      <title>fkie_cve-2020-1758</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-1758</link>
      <description>&lt;p&gt;A flaw was found in Keycloak in versions before 10.0.0, where it does not perform the TLS hostname verification while sending emails using the SMTP server. This flaw allows an attacker to perform a man-in-the-middle (MITM) attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in Keycloak in versions before 10.0.0, where it does not perform the TLS hostname verification while sending emails using the SMTP server. This flaw allows an attacker to perform a man-in-the-middle (MITM) attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-1758</guid>
    </item>
    <item>
      <title>GHSA-c597-f74m-jgc2 — Improper Certificate Validation and Improper Validation of Certificate with Host Mismatch in Keycloak</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c597-f74m-jgc2</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-parent&lt;/p&gt;
&lt;p&gt;A flaw was found in Keycloak in versions before 10.0.0, where it does not perform the TLS hostname verification while sending emails using the SMTP server. This flaw allows an attacker to perform a man-in-the-middle (MITM) attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-parent&lt;/p&gt;
&lt;p&gt;A flaw was found in Keycloak in versions before 10.0.0, where it does not perform the TLS hostname verification while sending emails using the SMTP server. This flaw allows an attacker to perform a man-in-the-middle (MITM) attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c597-f74m-jgc2</guid>
    </item>
    <item>
      <title>gsd-2020-1758</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-1758</link>
      <description>gsd-2020-1758</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-1758</guid>
    </item>
    <item>
      <title>RHSA-2020:2106 — Red Hat Security Advisory: Red Hat Single Sign-On 7.3.8 security update on RHEL 6</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:2106</link>
      <description>&lt;p&gt;keycloak: security issue on reset credential flow keycloak: problem with privacy after user logout keycloak: improper verification of certificate with host mismatch could result in information disclosure&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;keycloak: security issue on reset credential flow keycloak: problem with privacy after user logout keycloak: improper verification of certificate with host mismatch could result in information disclosure&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:2106</guid>
    </item>
  </channel>
</rss>
