<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:57:43 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-20926</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-20926</link>
      <description>EUVD-2026-20926</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-20926</guid>
    </item>
    <item>
      <title>fkie_cve-2021-3528</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3528</link>
      <description>&lt;p&gt;A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files. An attacker with access to the log files could use this AuthToken to gain additional access into noobaa deployment and can read/modify system configuration.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files. An attacker with access to the log files could use this AuthToken to gain additional access into noobaa deployment and can read/modify system configuration.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-3528</guid>
    </item>
    <item>
      <title>GHSA-3q58-8ch7-h333</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3q58-8ch7-h333</link>
      <description>&lt;p&gt;A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files. An attacker with access to the log files could use this AuthToken to gain additional access into noobaa deployment and can read/modify system configuration.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files. An attacker with access to the log files could use this AuthToken to gain additional access into noobaa deployment and can read/modify system configuration.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3q58-8ch7-h333</guid>
    </item>
    <item>
      <title>gsd-2021-3528</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-3528</link>
      <description>gsd-2021-3528</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-3528</guid>
    </item>
    <item>
      <title>RHSA-2021:2041 — Red Hat Security Advisory: Red Hat OpenShift Container Storage 4.7.0 security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:2041</link>
      <description>&lt;p&gt;nodejs-yargs-parser: prototype pollution vulnerability nodejs-y18n: prototype pollution vulnerability kubernetes: Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &amp;gt;= 9 jwt-go: access restriction bypass vulnerability nodejs-date-and-time: ReDoS in parsing via date.compile golang: math/big: panic during recursive division of very large numbers golang: crypto/elliptic: incorrect operations on the P-224 curve NooBaa: noobaa-operator leaking RPC AuthToken into log files&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nodejs-yargs-parser: prototype pollution vulnerability nodejs-y18n: prototype pollution vulnerability kubernetes: Incomplete fix for CVE-2019-11250 allows for token leak in logs when logLevel &amp;gt;= 9 jwt-go: access restriction bypass vulnerability nodejs-date-and-time: ReDoS in parsing via date.compile golang: math/big: panic during recursive division of very large numbers golang: crypto/elliptic: incorrect operations on the P-224 curve NooBaa: noobaa-operator leaking RPC AuthToken into log files&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:2041</guid>
    </item>
  </channel>
</rss>
