<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 21:27:29 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0214 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0214</link>
      <description>certfr-2025-avi-0214</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0214</guid>
    </item>
    <item>
      <title>EUVD-2026-12760</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-12760</link>
      <description>EUVD-2026-12760</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-12760</guid>
    </item>
    <item>
      <title>fkie_cve-2022-4742</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-4742</link>
      <description>&lt;p&gt;A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes (&amp;#39;prototype pollution&amp;#39;). The attack may be launched remotely. Upgrading to version 0.6.2 is able to address this issue. The patch is identified as 859c9984b6c407fc2d5a0a7e47c7274daa681941. It is recommended to upgrade the affected component. VDB-216794 is the identifier assigned to this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes (&amp;#39;prototype pollution&amp;#39;). The attack may be launched remotely. Upgrading to version 0.6.2 is able to address this issue. The patch is identified as 859c9984b6c407fc2d5a0a7e47c7274daa681941. It is recommended to upgrade the affected component. VDB-216794 is the identifier assigned to this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-4742</guid>
    </item>
    <item>
      <title>GHSA-6xrf-q977-5vgc — json-pointer vulnerable to Prototype Pollution</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6xrf-q977-5vgc</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: json-pointer&lt;/p&gt;
&lt;p&gt;A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes (&amp;#39;prototype pollution&amp;#39;). The attack may be launched remotely. Upgrading to version 0.6.2 is able to address this issue. The patch is identified as 859c9984b6c407fc2d5a0a7e47c7274daa681941. It is recommended to upgrade the affected component. VDB-216794 is the identifier assigned to this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: json-pointer&lt;/p&gt;
&lt;p&gt;A vulnerability, which was classified as critical, has been found in json-pointer up to 0.6.1. Affected by this issue is the function set of the file index.js. The manipulation leads to improperly controlled modification of object prototype attributes (&amp;#39;prototype pollution&amp;#39;). The attack may be launched remotely. Upgrading to version 0.6.2 is able to address this issue. The patch is identified as 859c9984b6c407fc2d5a0a7e47c7274daa681941. It is recommended to upgrade the affected component. VDB-216794 is the identifier assigned to this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6xrf-q977-5vgc</guid>
    </item>
    <item>
      <title>gsd-2022-4742</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-4742</link>
      <description>gsd-2022-4742</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-4742</guid>
    </item>
    <item>
      <title>RHSA-2023:3815 — Red Hat Security Advisory: Service Registry (container images) release and security update [2.4.3 GA]</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:3815</link>
      <description>&lt;p&gt;jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode protobuf-java: Textformat parsing issue leads to DoS protobuf-java: Message-Type Extensions parsing issue leads to DoS keycloak: path traversal via double URL encoding json-pointer: prototype pollution in json-pointer http-cache-semantics: Regular Expression Denial of Service (ReDoS) vulnerability woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks apache-james-mime4j: Temporary File Information Disclosure in MIME4J TempFileStorageProvider graphql-java: crafted GraphQL query causes stack consumption&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;jackson-databind: Possible DoS if using JDK serialization to serialize JsonNode protobuf-java: Textformat parsing issue leads to DoS protobuf-java: Message-Type Extensions parsing issue leads to DoS keycloak: path traversal via double URL encoding json-pointer: prototype pollution in json-pointer http-cache-semantics: Regular Expression Denial of Service (ReDoS) vulnerability woodstox-core: woodstox to serialise XML data was vulnerable to Denial of Service attacks apache-james-mime4j: Temporary File Information Disclosure in MIME4J TempFileStorageProvider graphql-java: crafted GraphQL query causes stack consumption&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:3815</guid>
    </item>
  </channel>
</rss>
