<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:56:12 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-03969</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-03969</link>
      <description>bdu:2021-03969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-03969</guid>
    </item>
    <item>
      <title>cnvd-2021-60555</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-60555</link>
      <description>cnvd-2021-60555</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-60555</guid>
    </item>
    <item>
      <title>EUVD-2026-20948</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-20948</link>
      <description>EUVD-2026-20948</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-20948</guid>
    </item>
    <item>
      <title>fkie_cve-2021-3636</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3636</link>
      <description>&lt;p&gt;It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additional certificates. The Service CA is automatically mounted into all pods, allowing them to safely connect to trusted in-cluster services that present certificates signed by the trusted Service CA. The incorrect inclusion of additional CAs in this certificate would allow an attacker that compromises any of the additional CAs to masquerade as a trusted in-cluster service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additional certificates. The Service CA is automatically mounted into all pods, allowing them to safely connect to trusted in-cluster services that present certificates signed by the trusted Service CA. The incorrect inclusion of additional CAs in this certificate would allow an attacker that compromises any of the additional CAs to masquerade as a trusted in-cluster service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-3636</guid>
    </item>
    <item>
      <title>GHSA-6fcp-x27g-fqqw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6fcp-x27g-fqqw</link>
      <description>&lt;p&gt;It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additional certificates. The Service CA is automatically mounted into all pods, allowing them to safely connect to trusted in-cluster services that present certificates signed by the trusted Service CA. The incorrect inclusion of additional CAs in this certificate would allow an attacker that compromises any of the additional CAs to masquerade as a trusted in-cluster service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was found in OpenShift, before version 4.8, that the generated certificate for the in-cluster Service CA, incorrectly included additional certificates. The Service CA is automatically mounted into all pods, allowing them to safely connect to trusted in-cluster services that present certificates signed by the trusted Service CA. The incorrect inclusion of additional CAs in this certificate would allow an attacker that compromises any of the additional CAs to masquerade as a trusted in-cluster service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6fcp-x27g-fqqw</guid>
    </item>
    <item>
      <title>gsd-2021-3636</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-3636</link>
      <description>gsd-2021-3636</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-3636</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-3636 — It was found in OpenShift before version 4.8 that the generated certificate for the in-cluster Service CA incorrectly i…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3636</link>
      <description>msrc_CVE-2021-3636</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-3636</guid>
    </item>
    <item>
      <title>RHSA-2021:2437 — Red Hat Security Advisory: OpenShift Container Platform 4.8.2 packages and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:2437</link>
      <description>&lt;p&gt;golang: crypto/elliptic: incorrect operations on the P-224 curve gogo/protobuf: plugin/unmarshal/unmarshal.go lacks certain index validation openshift: Injected service-ca.crt incorrectly contains additional internal CAs containers/storage: DoS via malicious image python-eventlet: improper handling of highly compressed data and memory allocation with excessive size allows DoS jenkins: Arbitrary file read vulnerability in workspace browsers jenkins: XSS vulnerability in notification bar jenkins: Improper handling of REST API XML deserialization errors jenkins: Path traversal vulnerability in agent names jenkins: Arbitrary file existence check in file fingerprints jenkins: Excessive memory allocation in graph URLs leads to denial of service jenkins: Stored XSS vulnerability in button labels jenkins: Missing permission check for paths with specific prefix jenkins: Reflected XSS vulnerability in markup formatter preview jenkins: Stored XSS vulnerability on new item page jenkins-2-plugins/matrix-auth: Incorrect permission checks in Matrix Authorization Strategy Plugin jenkins: lack of type validation in agent related REST API jenkins: view name validation bypass jenkins-2-plugins/config-file-provider: Does not configure its XML parser to prevent XML external entity (XXE) attacks. jenkins-2-plugins/config-file-provider: Does not correctly perform permission checks in several HTTP endpoints. jenkins-2-plugins/config-file-provider: does not require POST requests for an HTTP endpoint…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;golang: crypto/elliptic: incorrect operations on the P-224 curve gogo/protobuf: plugin/unmarshal/unmarshal.go lacks certain index validation openshift: Injected service-ca.crt incorrectly contains additional internal CAs containers/storage: DoS via malicious image python-eventlet: improper handling of highly compressed data and memory allocation with excessive size allows DoS jenkins: Arbitrary file read vulnerability in workspace browsers jenkins: XSS vulnerability in notification bar jenkins: Improper handling of REST API XML deserialization errors jenkins: Path traversal vulnerability in agent names jenkins: Arbitrary file existence check in file fingerprints jenkins: Excessive memory allocation in graph URLs leads to denial of service jenkins: Stored XSS vulnerability in button labels jenkins: Missing permission check for paths with specific prefix jenkins: Reflected XSS vulnerability in markup formatter preview jenkins: Stored XSS vulnerability on new item page jenkins-2-plugins/matrix-auth: Incorrect permission checks in Matrix Authorization Strategy Plugin jenkins: lack of type validation in agent related REST API jenkins: view name validation bypass jenkins-2-plugins/config-file-provider: Does not configure its XML parser to prevent XML external entity (XXE) attacks. jenkins-2-plugins/config-file-provider: Does not correctly perform permission checks in several HTTP endpoints. jenkins-2-plugins/config-file-provider: does not require POST requests for an HTTP endpoint…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:2437</guid>
    </item>
  </channel>
</rss>
