<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 06:24:50 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-00195</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-00195</link>
      <description>bdu:2022-00195</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-00195</guid>
    </item>
    <item>
      <title>certfr-2022-avi-013 — Une vulnérabilité a été découverte dans la base de données H2. Elle
permet à un attaquant de provoquer une exécution de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-013</link>
      <description>certfr-2022-avi-013</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-013</guid>
    </item>
    <item>
      <title>cnvd-2022-09868</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2022-09868</link>
      <description>cnvd-2022-09868</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2022-09868</guid>
    </item>
    <item>
      <title>EUVD-2026-32113</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-32113</link>
      <description>EUVD-2026-32113</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-32113</guid>
    </item>
    <item>
      <title>fkie_cve-2021-42392</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-42392</link>
      <description>&lt;p&gt;The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-42392</guid>
    </item>
    <item>
      <title>GHSA-h376-j262-vhq6 — RCE in H2 Console</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-h376-j262-vhq6</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.h2database:h2&lt;/p&gt;
&lt;p&gt;### Impact
H2 Console in versions since 1.1.100 (2008-10-14) to 2.0.204 (2021-12-21) inclusive allows loading of custom classes from remote servers through JNDI.&lt;/p&gt;
&lt;p&gt;H2 Console doesn&amp;#39;t accept remote connections by default. If remote access was enabled explicitly and some protection method (such as security constraint) wasn&amp;#39;t set, an intruder can load own custom class and execute its code in a process with H2 Console (H2 Server process or a web server with H2 Console servlet).&lt;/p&gt;
&lt;p&gt;It is also possible to load them by creation a linked table in these versions, but it requires `ADMIN` privileges and user with `ADMIN` privileges has full access to the Java process by design. These privileges should never be granted to untrusted users.&lt;/p&gt;
&lt;p&gt;### Patches
Since version 2.0.206 H2 Console and linked tables explicitly forbid attempts to specify LDAP URLs for JNDI. Only local data sources can be used.&lt;/p&gt;
&lt;p&gt;### Workarounds
H2 Console should never be available to untrusted users.&lt;/p&gt;
&lt;p&gt;`-webAllowOthers` is a dangerous setting that should be avoided.&lt;/p&gt;
&lt;p&gt;H2 Console Servlet deployed on a web server can be protected with a security constraint:
https://h2database.com/html/tutorial.html#usingH2ConsoleServlet
If `webAllowOthers` is specified, you need to uncomment and edit `&amp;lt;security-role&amp;gt;` and `&amp;lt;security-constraint&amp;gt;` as necessary. See documentation of your web server for more details.&lt;/p&gt;
&lt;p&gt;### References
This issue was found and privately reported to H2 team by [JFrog Security](https://www.jfrog.com/)&amp;#39;s vulnerability r…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.h2database:h2&lt;/p&gt;
&lt;p&gt;### Impact
H2 Console in versions since 1.1.100 (2008-10-14) to 2.0.204 (2021-12-21) inclusive allows loading of custom classes from remote servers through JNDI.&lt;/p&gt;
&lt;p&gt;H2 Console doesn&amp;#39;t accept remote connections by default. If remote access was enabled explicitly and some protection method (such as security constraint) wasn&amp;#39;t set, an intruder can load own custom class and execute its code in a process with H2 Console (H2 Server process or a web server with H2 Console servlet).&lt;/p&gt;
&lt;p&gt;It is also possible to load them by creation a linked table in these versions, but it requires `ADMIN` privileges and user with `ADMIN` privileges has full access to the Java process by design. These privileges should never be granted to untrusted users.&lt;/p&gt;
&lt;p&gt;### Patches
Since version 2.0.206 H2 Console and linked tables explicitly forbid attempts to specify LDAP URLs for JNDI. Only local data sources can be used.&lt;/p&gt;
&lt;p&gt;### Workarounds
H2 Console should never be available to untrusted users.&lt;/p&gt;
&lt;p&gt;`-webAllowOthers` is a dangerous setting that should be avoided.&lt;/p&gt;
&lt;p&gt;H2 Console Servlet deployed on a web server can be protected with a security constraint:
https://h2database.com/html/tutorial.html#usingH2ConsoleServlet
If `webAllowOthers` is specified, you need to uncomment and edit `&amp;lt;security-role&amp;gt;` and `&amp;lt;security-constraint&amp;gt;` as necessary. See documentation of your web server for more details.&lt;/p&gt;
&lt;p&gt;### References
This issue was found and privately reported to H2 team by [JFrog Security](https://www.jfrog.com/)&amp;#39;s vulnerability r…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-h376-j262-vhq6</guid>
    </item>
    <item>
      <title>gsd-2021-42392</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-42392</link>
      <description>gsd-2021-42392</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-42392</guid>
    </item>
    <item>
      <title>RHSA-2022:1013 — Red Hat Security Advisory: Red Hat Integration Camel Extensions for Quarkus 2.2.1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:1013</link>
      <description>&lt;p&gt;guava: local information disclosure via temporary directory created with unsafe permissions bouncycastle: Timing issue within the EC math library mysql-connector-java: unauthorized access to critical kubernetes-client: Insecure deserialization in unmarshalYaml method protobuf-java: potential DoS in the parsing procedure for binary data maven: Block repositories using http by default jersey: Local information disclosure via system temporary directory jakarta-el: ELParserTokenManager enables invalid EL expressions to be evaluate mina-sshd-core: Memory leak denial of service in Apache Mina SSHD Server netty-codec: Bzip2Decoder doesn&amp;#39;t allow setting size restrictions for decompressed data netty-codec: SnappyFrameDecoder doesn&amp;#39;t restrict chunk length and may buffer skippable chunks in an unnecessary way xml-security: XPath Transform abuse allows for information disclosure cron-utils: template Injection leading to unauthenticated Remote Code Execution h2: Remote Code Execution in Console&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;guava: local information disclosure via temporary directory created with unsafe permissions bouncycastle: Timing issue within the EC math library mysql-connector-java: unauthorized access to critical kubernetes-client: Insecure deserialization in unmarshalYaml method protobuf-java: potential DoS in the parsing procedure for binary data maven: Block repositories using http by default jersey: Local information disclosure via system temporary directory jakarta-el: ELParserTokenManager enables invalid EL expressions to be evaluate mina-sshd-core: Memory leak denial of service in Apache Mina SSHD Server netty-codec: Bzip2Decoder doesn&amp;#39;t allow setting size restrictions for decompressed data netty-codec: SnappyFrameDecoder doesn&amp;#39;t restrict chunk length and may buffer skippable chunks in an unnecessary way xml-security: XPath Transform abuse allows for information disclosure cron-utils: template Injection leading to unauthenticated Remote Code Execution h2: Remote Code Execution in Console&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:1013</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-42392</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-42392</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: h2database, Ubuntu:Pro:18.04:LTS: h2database, Ubuntu:20.04:LTS: h2database, Ubuntu:22.04:LTS: h2database&lt;/p&gt;
&lt;p&gt;The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: h2database, Ubuntu:Pro:18.04:LTS: h2database, Ubuntu:20.04:LTS: h2database, Ubuntu:22.04:LTS: h2database&lt;/p&gt;
&lt;p&gt;The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and URL of the database. An attacker may pass a JNDI driver name and a URL leading to a LDAP or RMI servers, causing remote code execution. This can be exploited through various attack vectors, most notably through the H2 Console which leads to unauthenticated remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-42392</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0098 — H2: Schwachstelle ermöglicht Codeausführung</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0098</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in H2 ausnutzen, um beliebigen Programmcode auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in H2 ausnutzen, um beliebigen Programmcode auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0098</guid>
    </item>
  </channel>
</rss>
