<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:40:11 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-11873</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-11873</link>
      <description>EUVD-2026-11873</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-11873</guid>
    </item>
    <item>
      <title>fkie_cve-2022-1655</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-1655</link>
      <description>&lt;p&gt;An Incorrect Permission Assignment for Critical Resource flaw was found in Horizon on Red Hat OpenStack. Horizon session cookies are created without the HttpOnly flag despite HorizonSecureCookies being set to true in the environmental files, possibly leading to a loss of confidentiality and integrity.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Incorrect Permission Assignment for Critical Resource flaw was found in Horizon on Red Hat OpenStack. Horizon session cookies are created without the HttpOnly flag despite HorizonSecureCookies being set to true in the environmental files, possibly leading to a loss of confidentiality and integrity.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-1655</guid>
    </item>
    <item>
      <title>GHSA-xm48-7qq2-36x4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xm48-7qq2-36x4</link>
      <description>&lt;p&gt;An Incorrect Permission Assignment for Critical Resource flaw was found in Horizon on Red Hat OpenStack. Horizon session cookies are created without the HttpOnly flag despite HorizonSecureCookies being set to true in the environmental files, possibly leading to a loss of confidentiality and integrity.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An Incorrect Permission Assignment for Critical Resource flaw was found in Horizon on Red Hat OpenStack. Horizon session cookies are created without the HttpOnly flag despite HorizonSecureCookies being set to true in the environmental files, possibly leading to a loss of confidentiality and integrity.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xm48-7qq2-36x4</guid>
    </item>
    <item>
      <title>gsd-2022-1655</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-1655</link>
      <description>gsd-2022-1655</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-1655</guid>
    </item>
    <item>
      <title>RHSA-2022:8856 — Red Hat Security Advisory: Red Hat OpenStack Platform 16.2.4 (python-django-horizon) security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:8856</link>
      <description>&lt;p&gt;OpenStack: Horizon session cookies are not flagged HttpOnly&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenStack: Horizon session cookies are not flagged HttpOnly&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:8856</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0817 — Red Hat OpenStack: Schwachstelle ermöglicht Manipulation von Dateien</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0817</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenStack ausnutzen, um Dateien zu manipulieren oder Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenStack ausnutzen, um Dateien zu manipulieren oder Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0817</guid>
    </item>
  </channel>
</rss>
