<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:21:58 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-05035</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-05035</link>
      <description>bdu:2023-05035</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-05035</guid>
    </item>
    <item>
      <title>EUVD-2026-193662</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-193662</link>
      <description>EUVD-2026-193662</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-193662</guid>
    </item>
    <item>
      <title>fkie_cve-2023-33008</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-33008</link>
      <description>&lt;p&gt;Deserialization of Untrusted Data vulnerability in Apache Software Foundation Apache Johnzon.&lt;/p&gt;
&lt;p&gt;A malicious attacker can craft up some JSON input that uses large numbers (numbers such as 1e20000000) that Apache Johnzon will deserialize into BigDecimal and maybe use numbers too large which may result in a slow conversion (Denial of service risk). Apache Johnzon 1.2.21 mitigates this by setting a scale limit of 1000 (by default) to the BigDecimal.&lt;/p&gt;
&lt;p&gt;This issue affects Apache Johnzon: through 1.2.20.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Deserialization of Untrusted Data vulnerability in Apache Software Foundation Apache Johnzon.&lt;/p&gt;
&lt;p&gt;A malicious attacker can craft up some JSON input that uses large numbers (numbers such as 1e20000000) that Apache Johnzon will deserialize into BigDecimal and maybe use numbers too large which may result in a slow conversion (Denial of service risk). Apache Johnzon 1.2.21 mitigates this by setting a scale limit of 1000 (by default) to the BigDecimal.&lt;/p&gt;
&lt;p&gt;This issue affects Apache Johnzon: through 1.2.20.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-33008</guid>
    </item>
    <item>
      <title>GHSA-crqg-jrpj-fc84 — Apache Johnzon Deserialization of Untrusted Data vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-crqg-jrpj-fc84</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.johnzon:johnzon-mapper&lt;/p&gt;
&lt;p&gt;A malicious attacker can craft up some JSON input that uses large numbers (numbers such as 1e20000000) that Apache Johnzon will deserialize into BigDecimal and maybe use numbers too large which may result in a slow conversion (Denial of service risk). Apache Johnzon 1.2.21 mitigates this by setting a scale limit of 1000 (by default) to the BigDecimal.&lt;/p&gt;
&lt;p&gt;This issue affects Apache Johnzon through 1.2.20.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.johnzon:johnzon-mapper&lt;/p&gt;
&lt;p&gt;A malicious attacker can craft up some JSON input that uses large numbers (numbers such as 1e20000000) that Apache Johnzon will deserialize into BigDecimal and maybe use numbers too large which may result in a slow conversion (Denial of service risk). Apache Johnzon 1.2.21 mitigates this by setting a scale limit of 1000 (by default) to the BigDecimal.&lt;/p&gt;
&lt;p&gt;This issue affects Apache Johnzon through 1.2.20.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-crqg-jrpj-fc84</guid>
    </item>
    <item>
      <title>gsd-2023-33008</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-33008</link>
      <description>gsd-2023-33008</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-33008</guid>
    </item>
    <item>
      <title>RHSA-2023:5441 — Red Hat Security Advisory: Red Hat Integration Camel for Spring Boot 4.0.0 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:5441</link>
      <description>&lt;p&gt;batik: Server-Side Request Forgery vulnerability batik: Server-Side Request Forgery vulnerability apache-ivy: XML External Entity vulnerability jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter() jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies apache-johnzon: Prevent inefficient internal conversion from BigDecimal at large scale netty: SniHandler 16MB allocation leads to OOM jetty: Improper validation of HTTP/1 content-length&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;batik: Server-Side Request Forgery vulnerability batik: Server-Side Request Forgery vulnerability apache-ivy: XML External Entity vulnerability jetty-server: OutOfMemoryError for large multipart without filename read via request.getParameter() jetty-server: Cookie parsing of quoted values can exfiltrate values from other cookies apache-johnzon: Prevent inefficient internal conversion from BigDecimal at large scale netty: SniHandler 16MB allocation leads to OOM jetty: Improper validation of HTTP/1 content-length&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:5441</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2583 — Red Hat JBoss A-MQ: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2583</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat JBoss A-MQ ausnutzen, um Informationen offenzulegen, Dateien zu manipulieren oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat JBoss A-MQ ausnutzen, um Informationen offenzulegen, Dateien zu manipulieren oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2583</guid>
    </item>
  </channel>
</rss>
