<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 21:05:08 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-45734</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-45734</link>
      <description>EUVD-2026-45734</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-45734</guid>
    </item>
    <item>
      <title>fkie_cve-2020-25711</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-25711</link>
      <description>&lt;p&gt;A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-25711</guid>
    </item>
    <item>
      <title>GHSA-8674-26jc-wh98 — Improper Access Control in infinispan-server-runtime</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8674-26jc-wh98</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.infinispan:infinispan-core&lt;/p&gt;
&lt;p&gt;A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.infinispan:infinispan-core&lt;/p&gt;
&lt;p&gt;A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8674-26jc-wh98</guid>
    </item>
    <item>
      <title>gsd-2020-25711</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-25711</link>
      <description>gsd-2020-25711</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-25711</guid>
    </item>
    <item>
      <title>RHSA-2021:0433 — Red Hat Security Advisory: Red Hat Data Grid 8.1.1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:0433</link>
      <description>&lt;p&gt;wildfly-openssl: memory leak per HTTP session creation in WildFly OpenSSL infinispan: authorization check missing for server management operations XStream: remote code execution due to insecure XML deserialization when relying on blocklists&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;wildfly-openssl: memory leak per HTTP session creation in WildFly OpenSSL infinispan: authorization check missing for server management operations XStream: remote code execution due to insecure XML deserialization when relying on blocklists&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:0433</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0180 — Dell Data Protection Advisor: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0180</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu erzeugen, Sicherheitsmaßnahmen zu umgehen und nicht näher spezifizierte Angriffe zu starten.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Dell Data Protection Advisor ausnutzen, um beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu erzeugen, Sicherheitsmaßnahmen zu umgehen und nicht näher spezifizierte Angriffe zu starten.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0180</guid>
    </item>
  </channel>
</rss>
