<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 17:07:43 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-218841</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-218841</link>
      <description>EUVD-2026-218841</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-218841</guid>
    </item>
    <item>
      <title>fkie_cve-2023-28118</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-28118</link>
      <description>&lt;p&gt;kaml provides YAML support for kotlinx.serialization. Prior to version 0.53.0, applications that use kaml to parse untrusted input containing anchors and aliases may consume excessive memory and crash. Version 0.53.0 and later default to refusing to parse YAML documents containing anchors and aliases. There are no known workarounds.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kaml provides YAML support for kotlinx.serialization. Prior to version 0.53.0, applications that use kaml to parse untrusted input containing anchors and aliases may consume excessive memory and crash. Version 0.53.0 and later default to refusing to parse YAML documents containing anchors and aliases. There are no known workarounds.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-28118</guid>
    </item>
    <item>
      <title>GHSA-c24f-2j3g-rg48 — kaml has potential denial of service while parsing input with anchors and aliases</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c24f-2j3g-rg48</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.charleskorn.kaml:kaml&lt;/p&gt;
&lt;p&gt;### Impact
Applications that use kaml to parse untrusted input containing anchors and aliases may consume excessive memory and crash.&lt;/p&gt;
&lt;p&gt;### Patches
Version 0.53.0 and later default to refusing to parse YAML documents containing anchors and aliases.&lt;/p&gt;
&lt;p&gt;### Workarounds
None.&lt;/p&gt;
&lt;p&gt;### References
Wikipedia has an explanation of this class of vulnerability: [billion laughs attack](https://en.wikipedia.org/wiki/Billion_laughs_attack)&lt;/p&gt;
&lt;p&gt;### Acknowledgements
Thank you to @gdude2002 for reporting this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: com.charleskorn.kaml:kaml&lt;/p&gt;
&lt;p&gt;### Impact
Applications that use kaml to parse untrusted input containing anchors and aliases may consume excessive memory and crash.&lt;/p&gt;
&lt;p&gt;### Patches
Version 0.53.0 and later default to refusing to parse YAML documents containing anchors and aliases.&lt;/p&gt;
&lt;p&gt;### Workarounds
None.&lt;/p&gt;
&lt;p&gt;### References
Wikipedia has an explanation of this class of vulnerability: [billion laughs attack](https://en.wikipedia.org/wiki/Billion_laughs_attack)&lt;/p&gt;
&lt;p&gt;### Acknowledgements
Thank you to @gdude2002 for reporting this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c24f-2j3g-rg48</guid>
    </item>
    <item>
      <title>gsd-2023-28118</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-28118</link>
      <description>gsd-2023-28118</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-28118</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2858 — IBM Security Guardium: Mehrere Schwachstellen ermöglichen Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2858</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM Security Guardium ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM Security Guardium ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2858</guid>
    </item>
  </channel>
</rss>
