<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:06:14 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-01536</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-01536</link>
      <description>bdu:2024-01536</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-01536</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0154 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0154</link>
      <description>certfr-2025-avi-0154</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0154</guid>
    </item>
    <item>
      <title>EUVD-2026-12719</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-12719</link>
      <description>EUVD-2026-12719</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-12719</guid>
    </item>
    <item>
      <title>fkie_cve-2022-4244</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-4244</link>
      <description>&lt;p&gt;A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with &amp;#34;dot-dot-slash (../)&amp;#34; sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with &amp;#34;dot-dot-slash (../)&amp;#34; sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-4244</guid>
    </item>
    <item>
      <title>GHSA-g6ph-x5wf-g337 — plexus-codehaus vulnerable to directory traversal</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g6ph-x5wf-g337</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.codehaus.plexus:plexus-utils&lt;/p&gt;
&lt;p&gt;A flaw was found in plexus-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with dot-dot-slash (`../`) sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.codehaus.plexus:plexus-utils&lt;/p&gt;
&lt;p&gt;A flaw was found in plexus-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with dot-dot-slash (`../`) sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g6ph-x5wf-g337</guid>
    </item>
    <item>
      <title>gsd-2022-4244</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-4244</link>
      <description>gsd-2022-4244</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-4244</guid>
    </item>
    <item>
      <title>RHSA-2023:2135 — Red Hat Security Advisory: Red Hat Process Automation Manager 7.13.3 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:2135</link>
      <description>&lt;p&gt;keycloak: path traversal via double URL encoding codehaus-plexus: Directory Traversal codehaus-plexus: XML External Entity (XXE) Injection jettison: parser crash by stackoverflow jettison: memory exhaustion via user-supplied XML or JSON data jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS jackson-databind: use of deeply nested arrays apache-commons-text: variable interpolation RCE jettison: If the value in map is the map&amp;#39;s self, the new new JSONObject(map) cause StackOverflowError which may lead to dos CXF: directory listing / code exfiltration CXF: SSRF Vulnerability Undertow: Infinite loop in SslConduit during close&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;keycloak: path traversal via double URL encoding codehaus-plexus: Directory Traversal codehaus-plexus: XML External Entity (XXE) Injection jettison: parser crash by stackoverflow jettison: memory exhaustion via user-supplied XML or JSON data jackson-databind: deep wrapper array nesting wrt UNWRAP_SINGLE_VALUE_ARRAYS jackson-databind: use of deeply nested arrays apache-commons-text: variable interpolation RCE jettison: If the value in map is the map&amp;#39;s self, the new new JSONObject(map) cause StackOverflowError which may lead to dos CXF: directory listing / code exfiltration CXF: SSRF Vulnerability Undertow: Infinite loop in SslConduit during close&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:2135</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-4244</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-4244</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: plexus-utils2, Ubuntu:16.04:LTS: plexus-utils2, Ubuntu:18.04:LTS: plexus-utils2&lt;/p&gt;
&lt;p&gt;A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with &amp;#34;dot-dot-slash (../)&amp;#34; sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: plexus-utils2, Ubuntu:16.04:LTS: plexus-utils2, Ubuntu:18.04:LTS: plexus-utils2&lt;/p&gt;
&lt;p&gt;A flaw was found in codeplex-codehaus. A directory traversal attack (also known as path traversal) aims to access files and directories stored outside the intended folder. By manipulating files with &amp;#34;dot-dot-slash (../)&amp;#34; sequences and their variations or by using absolute file paths, it may be possible to access arbitrary files and directories stored on the file system, including application source code, configuration, and other critical system files.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-4244</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0094 — Atlassian Bamboo: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0094</link>
      <description>&lt;p&gt;Ein entfernter Angreifer kann mehrere Schwachstellen in Atlassian Bamboo ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen oder einen Request Smuggling-Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter Angreifer kann mehrere Schwachstellen in Atlassian Bamboo ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen oder einen Request Smuggling-Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0094</guid>
    </item>
  </channel>
</rss>
