<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:23:34 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-591 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</link>
      <description>certfr-2022-avi-591</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</guid>
    </item>
    <item>
      <title>CLEANSTART-2026-AY16638 — Security fix for CVE-2020-8565 applied in: cluster-proportional-autoscaler 1.7.1-r0, gostatsd 28.3.0-r2</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-ay16638</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: cluster-proportional-autoscaler, CleanStart: gostatsd&lt;/p&gt;
&lt;p&gt;CVE-2020-8565 affects multiple packages. This issue is resolved in later releases. See references for individual vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: cluster-proportional-autoscaler, CleanStart: gostatsd&lt;/p&gt;
&lt;p&gt;CVE-2020-8565 affects multiple packages. This issue is resolved in later releases. See references for individual vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-ay16638</guid>
    </item>
    <item>
      <title>cnvd-2020-65159</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-65159</link>
      <description>cnvd-2020-65159</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-65159</guid>
    </item>
    <item>
      <title>EUVD-2026-177317</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-177317</link>
      <description>EUVD-2026-177317</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-177317</guid>
    </item>
    <item>
      <title>fkie_cve-2020-8565</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-8565</link>
      <description>&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.3, &amp;lt;= v1.18.10, &amp;lt;= v1.17.13, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.3, &amp;lt;= v1.18.10, &amp;lt;= v1.17.13, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-8565</guid>
    </item>
    <item>
      <title>GHSA-8cfg-vx93-jvxw — Kubernetes client-go vulnerable to Sensitive Information Leak via Log File</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8cfg-vx93-jvxw</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: k8s.io/client-go, Go: k8s.io/kubernetes&lt;/p&gt;
&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.5, &amp;lt;= v1.18.13, &amp;lt;= v1.17.15, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: k8s.io/client-go, Go: k8s.io/kubernetes&lt;/p&gt;
&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.5, &amp;lt;= v1.18.13, &amp;lt;= v1.17.15, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8cfg-vx93-jvxw</guid>
    </item>
    <item>
      <title>gsd-2020-8565</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-8565</link>
      <description>gsd-2020-8565</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-8565</guid>
    </item>
    <item>
      <title>msrc_CVE-2020-8565 — Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &gt;= 9</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2020-8565</link>
      <description>msrc_CVE-2020-8565</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2020-8565</guid>
    </item>
    <item>
      <title>RHBA-2021:3003 — Red Hat Bug Fix Advisory: Red Hat OpenShift Container Storage 4.8.0 container images bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhba-2021:3003</link>
      <description>&lt;p&gt;kubernetes: Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &amp;gt;= 9 noobaa-core: Cross-site scripting vulnerability with noobaa management URL golang: encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kubernetes: Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &amp;gt;= 9 noobaa-core: Cross-site scripting vulnerability with noobaa management URL golang: encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhba-2021:3003</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:3760-1 — Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1</link>
      <description>&lt;p&gt;Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1</guid>
    </item>
    <item>
      <title>Withdrawn: UBUNTU-CVE-2020-8565</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8565</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: kubernetes, Ubuntu:22.04:LTS: kubernetes, Ubuntu:24.04:LTS: kubernetes&lt;/p&gt;
&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.3, &amp;lt;= v1.18.10, &amp;lt;= v1.17.13, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:20.04:LTS: kubernetes, Ubuntu:22.04:LTS: kubernetes, Ubuntu:24.04:LTS: kubernetes&lt;/p&gt;
&lt;p&gt;In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &amp;lt;= v1.19.3, &amp;lt;= v1.18.10, &amp;lt;= v1.17.13, &amp;lt; v1.20.0-alpha2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-8565</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0510 — IBM DB2: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</link>
      <description>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</guid>
    </item>
  </channel>
</rss>
