<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:36:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-08539</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-08539</link>
      <description>bdu:2023-08539</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-08539</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0627 — De multiples vulnérabilités ont été découvertes dans les produits Splunk. Certaines d'entre elles permettent à un attaq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0627</link>
      <description>certfr-2026-avi-0627</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0627</guid>
    </item>
    <item>
      <title>EUVD-2026-202809</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-202809</link>
      <description>EUVD-2026-202809</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-202809</guid>
    </item>
    <item>
      <title>fkie_cve-2022-45868</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-45868</link>
      <description>&lt;p&gt;The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states &amp;#34;This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that.&amp;#34; Nonetheless, the issue was fixed in 2.2.220.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The web-based admin console in H2 Database Engine before 2.2.220 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states &amp;#34;This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that.&amp;#34; Nonetheless, the issue was fixed in 2.2.220.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-45868</guid>
    </item>
    <item>
      <title>GHSA-22wj-vf5f-wrvj — Password exposure in H2 Database</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-22wj-vf5f-wrvj</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.h2database:h2&lt;/p&gt;
&lt;p&gt;The web-based admin console in H2 Database Engine through 2.1.214 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states &amp;#34;This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that.&amp;#34;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.h2database:h2&lt;/p&gt;
&lt;p&gt;The web-based admin console in H2 Database Engine through 2.1.214 can be started via the CLI with the argument -webAdminPassword, which allows the user to specify the password in cleartext for the web admin console. Consequently, a local user (or an attacker that has obtained local access through some means) would be able to discover the password by listing processes and their arguments. NOTE: the vendor states &amp;#34;This is not a vulnerability of H2 Console ... Passwords should never be passed on the command line and every qualified DBA or system administrator is expected to know that.&amp;#34;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-22wj-vf5f-wrvj</guid>
    </item>
    <item>
      <title>gsd-2022-45868</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-45868</link>
      <description>gsd-2022-45868</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-45868</guid>
    </item>
    <item>
      <title>ICSA-25-261-04 — Multiple Open-Source Software Vulnerabilities in Hitachi Energy Asset Suite Product</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-25-261-04</link>
      <description>&lt;p&gt;Hitachi Energy is aware of multiple reported vulnerabilities that affect the Asset Suite product versions mentioned in this document below. If exploited these vulnerabilities can potentially impact on confidentiality, integrity and availability of the product. Please refer to the Recommended Immediate Actions for information about the mitigation/remediation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Hitachi Energy is aware of multiple reported vulnerabilities that affect the Asset Suite product versions mentioned in this document below. If exploited these vulnerabilities can potentially impact on confidentiality, integrity and availability of the product. Please refer to the Recommended Immediate Actions for information about the mitigation/remediation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-25-261-04</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-2219 — H2: Schwachstelle ermöglicht Privilegieneskalation</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2219</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in H2 ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in H2 ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2219</guid>
    </item>
  </channel>
</rss>
