<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 12:48:53 +0000</lastBuildDate>
    <item>
      <title>certfr-2023-avi-0142 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Splunk&lt;/span&gt;. Elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0142</link>
      <description>certfr-2023-avi-0142</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0142</guid>
    </item>
    <item>
      <title>EUVD-2026-219841</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-219841</link>
      <description>EUVD-2026-219841</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-219841</guid>
    </item>
    <item>
      <title>fkie_cve-2023-22943</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-22943</link>
      <description>&lt;p&gt;In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-22943</guid>
    </item>
    <item>
      <title>GHSA-jjqg-fqrm-g2vj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jjqg-fqrm-g2vj</link>
      <description>&lt;p&gt;In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs. The vulnerability affects AoB and apps that AoB generates when using the REST API Modular Input functionality through its user interface. The vulnerability also potentially affects third-party apps and add-ons that call the *cloudconnectlib.splunktacollectorlib.cloud_connect_mod_input* Python class directly.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs. The vulnerability affects AoB and apps that AoB generates when using the REST API Modular Input functionality through its user interface. The vulnerability also potentially affects third-party apps and add-ons that call the *cloudconnectlib.splunktacollectorlib.cloud_connect_mod_input* Python class directly.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jjqg-fqrm-g2vj</guid>
    </item>
    <item>
      <title>gsd-2023-22943</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-22943</link>
      <description>gsd-2023-22943</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-22943</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0395 — Splunk Splunk Enterprise: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0395</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Splunk Splunk Enterprise ausnutzen, um vertrauliche Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, Daten zu manipulieren und einen Cross-Site-Scripting-Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Splunk Splunk Enterprise ausnutzen, um vertrauliche Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand zu verursachen, Daten zu manipulieren und einen Cross-Site-Scripting-Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0395</guid>
    </item>
  </channel>
</rss>
