<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 18:06:10 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-06727</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-06727</link>
      <description>bdu:2022-06727</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-06727</guid>
    </item>
    <item>
      <title>certfr-2022-avi-658 — De multiples vulnérabilités ont été découvertes dans Oracle PeopleSoft.
Certaines d'entre elles permettent à un attaqua…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-658</link>
      <description>certfr-2022-avi-658</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-658</guid>
    </item>
    <item>
      <title>CLEANSTART-2026-GB22495 — Security fix for CVE-2021-31684 applied in: spark-sc213-jdk17-py312 3.5.8-r0</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-gb22495</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: spark-sc213-jdk17-py312&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the spark-sc213-jdk17-py312 package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: spark-sc213-jdk17-py312&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the spark-sc213-jdk17-py312 package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-gb22495</guid>
    </item>
    <item>
      <title>EUVD-2026-27603</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-27603</link>
      <description>EUVD-2026-27603</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-27603</guid>
    </item>
    <item>
      <title>fkie_cve-2021-31684</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-31684</link>
      <description>&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-31684</guid>
    </item>
    <item>
      <title>GHSA-fg2v-w576-w4v3 — Out of bounds read in json-smart</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fg2v-w576-w4v3</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.minidev:json-smart&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions prior to 1.3.3 and 2.4.5 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.minidev:json-smart&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions prior to 1.3.3 and 2.4.5 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fg2v-w576-w4v3</guid>
    </item>
    <item>
      <title>gsd-2021-31684</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-31684</link>
      <description>gsd-2021-31684</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-31684</guid>
    </item>
    <item>
      <title>RHSA-2022:8652 — Red Hat Security Advisory: Red Hat Fuse 7.11.1 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:8652</link>
      <description>&lt;p&gt;bootstrap: XSS in the tooltip or popover data-template attribute wildfly: incorrect JBOSS_LOCAL_USER challenge location may lead to giving access to all the local users json-smart: Denial of Service in JSONParserByteArray function minimist: prototype pollution urijs: Authorization Bypass Through User-Controlled Key http2-server: Invalid HTTP/2 requests cause DoS undertow: Large AJP request may cause DoS urijs: Leading white space bypasses protocol validation Moment.js: Path traversal  in moment.locale netty: world readable temporary file containing sensitive data snakeyaml: Denial of Service due to missing nested depth limitation for collections moment: inefficient parsing algorithm resulting in DoS postgresql: SQL Injection in ResultSet.refreshRow() with malicious column names apache-commons-configuration: Apache Commons Configuration insecure interpolation defaults snakeyaml: Uncaught exception in org.yaml.snakeyaml.composer.Composer.composeSequenceNode hsqldb: Untrusted input may lead to RCE attack apache-commons-text: variable interpolation RCE&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;bootstrap: XSS in the tooltip or popover data-template attribute wildfly: incorrect JBOSS_LOCAL_USER challenge location may lead to giving access to all the local users json-smart: Denial of Service in JSONParserByteArray function minimist: prototype pollution urijs: Authorization Bypass Through User-Controlled Key http2-server: Invalid HTTP/2 requests cause DoS undertow: Large AJP request may cause DoS urijs: Leading white space bypasses protocol validation Moment.js: Path traversal  in moment.locale netty: world readable temporary file containing sensitive data snakeyaml: Denial of Service due to missing nested depth limitation for collections moment: inefficient parsing algorithm resulting in DoS postgresql: SQL Injection in ResultSet.refreshRow() with malicious column names apache-commons-configuration: Apache Commons Configuration insecure interpolation defaults snakeyaml: Uncaught exception in org.yaml.snakeyaml.composer.Composer.composeSequenceNode hsqldb: Untrusted input may lead to RCE attack apache-commons-text: variable interpolation RCE&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:8652</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-31684</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31684</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: json-smart, Ubuntu:20.04:LTS: json-smart, Ubuntu:22.04:LTS: json-smart&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: json-smart, Ubuntu:20.04:LTS: json-smart, Ubuntu:22.04:LTS: json-smart&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in the indexOf function of JSONParserByteArray in JSON Smart versions 1.3 and 2.4 which causes a denial of service (DOS) via a crafted web request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31684</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1016 — Oracle Fusion Middleware: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1016</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1016</guid>
    </item>
  </channel>
</rss>
