<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 03:09:43 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0110 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;IBM&lt;/span&gt;. Elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0110</link>
      <description>certfr-2023-avi-0110</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0110</guid>
    </item>
    <item>
      <title>cnvd-2023-05221</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2023-05221</link>
      <description>cnvd-2023-05221</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2023-05221</guid>
    </item>
    <item>
      <title>EUVD-2026-228125</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-228125</link>
      <description>EUVD-2026-228125</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-228125</guid>
    </item>
    <item>
      <title>fkie_cve-2022-45787</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-45787</link>
      <description>&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions.&lt;/p&gt;
&lt;p&gt;We recommend users to upgrade to MIME4j version 0.8.9 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions.&lt;/p&gt;
&lt;p&gt;We recommend users to upgrade to MIME4j version 0.8.9 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-45787</guid>
    </item>
    <item>
      <title>GHSA-q84x-3476-8ff2 — Apache James MIME4J vulnerable to information disclosure to local users</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q84x-3476-8ff2</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.james:apache-mime4j-storage&lt;/p&gt;
&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions. We recommend users to upgrade to MIME4j version 0.8.9 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.james:apache-mime4j-storage&lt;/p&gt;
&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions. We recommend users to upgrade to MIME4j version 0.8.9 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q84x-3476-8ff2</guid>
    </item>
    <item>
      <title>gsd-2022-45787</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-45787</link>
      <description>gsd-2022-45787</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-45787</guid>
    </item>
    <item>
      <title>OESA-2025-2296 — apache-mime4j security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2296</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: apache-mime4j&lt;/p&gt;
&lt;p&gt;Java stream based MIME message parser.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions.&lt;/p&gt;
&lt;p&gt;We recommend users to upgrade to MIME4j version 0.8.9 or later.
(CVE-2022-45787)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: apache-mime4j&lt;/p&gt;
&lt;p&gt;Java stream based MIME message parser.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users. This issue affects Apache James MIME4J version 0.8.8 and prior versions.&lt;/p&gt;
&lt;p&gt;We recommend users to upgrade to MIME4j version 0.8.9 or later.
(CVE-2022-45787)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2296</guid>
    </item>
    <item>
      <title>RHSA-2023:1512 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.4.10 on RHEL 7 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:1512</link>
      <description>&lt;p&gt;SnakeYaml: Constructor Deserialization Remote Code Execution undertow: Server identity in https connection is not checked by the undertow client snakeyaml: Uncaught exception in java.base/java.util.ArrayList.hashCode hsqldb: Untrusted input may lead to RCE attack dev-java/snakeyaml: DoS via stack overflow codec-haproxy: HAProxyMessageDecoder Stack Exhaustion DoS apache-james-mime4j: Temporary File Information Disclosure in MIME4J TempFileStorageProvider RESTEasy: creation of insecure temp files Undertow: Infinite loop in SslConduit during close&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;SnakeYaml: Constructor Deserialization Remote Code Execution undertow: Server identity in https connection is not checked by the undertow client snakeyaml: Uncaught exception in java.base/java.util.ArrayList.hashCode hsqldb: Untrusted input may lead to RCE attack dev-java/snakeyaml: DoS via stack overflow codec-haproxy: HAProxyMessageDecoder Stack Exhaustion DoS apache-james-mime4j: Temporary File Information Disclosure in MIME4J TempFileStorageProvider RESTEasy: creation of insecure temp files Undertow: Infinite loop in SslConduit during close&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:1512</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0308 — IBM WebSphere Application Server Liberty: Schwachstelle ermöglicht Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0308</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in IBM WebSphere Application Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in IBM WebSphere Application Server ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0308</guid>
    </item>
  </channel>
</rss>
