<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 15:31:23 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-07354</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-07354</link>
      <description>bdu:2023-07354</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-07354</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0047 — De multiples vulnérabilités ont été découvertes dans Oracle PeopleSoft.
Elles permettent à un attaquant de provoquer un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0047</link>
      <description>certfr-2024-avi-0047</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0047</guid>
    </item>
    <item>
      <title>EUVD-2026-258472</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-258472</link>
      <description>EUVD-2026-258472</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-258472</guid>
    </item>
    <item>
      <title>fkie_cve-2023-44483</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-44483</link>
      <description>&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-44483</guid>
    </item>
    <item>
      <title>GHSA-xfrj-6vvc-3xm2 — Apache Santuario - XML Security for Java are vulnerable to private key disclosure</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xfrj-6vvc-3xm2</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.santuario:xmlsec&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.santuario:xmlsec&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xfrj-6vvc-3xm2</guid>
    </item>
    <item>
      <title>gsd-2023-44483</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-44483</link>
      <description>gsd-2023-44483</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-44483</guid>
    </item>
    <item>
      <title>OESA-2025-2380 — xml-security security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2380</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: xml-security&lt;/p&gt;
&lt;p&gt;The XML Security project is aimed at providing implementation of security standards for XML. Currently the focus is on the W3C standards : - XML-Signature Syntax and Processing; and - XML Encryption Syntax and Processing.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.(CVE-2023-44483)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: xml-security&lt;/p&gt;
&lt;p&gt;The XML Security project is aimed at providing implementation of security standards for XML. Currently the focus is on the W3C standards : - XML-Signature Syntax and Processing; and - XML Encryption Syntax and Processing.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.(CVE-2023-44483)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2380</guid>
    </item>
    <item>
      <title>RHSA-2024:0710 — Red Hat Security Advisory: Red Hat JBoss Enterprise Application Platform 7.4.15 Security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:0710</link>
      <description>&lt;p&gt;jgit: arbitrary file overwrite santuario: Private Key disclosure in debug-log output&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;jgit: arbitrary file overwrite santuario: Private Key disclosure in debug-log output&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:0710</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-44483</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-44483</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libxml-security-java, Ubuntu:18.04:LTS: libxml-security-java, Ubuntu:20.04:LTS: libxml-security-java, Ubuntu:22.04:LTS: libxml-security-java, Ubuntu:24.04:LTS: libxml-security-java, Ubuntu:25.10: libxml-security-java, Ubuntu:26.04:LTS: libxml-security-java&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libxml-security-java, Ubuntu:18.04:LTS: libxml-security-java, Ubuntu:20.04:LTS: libxml-security-java, Ubuntu:22.04:LTS: libxml-security-java, Ubuntu:24.04:LTS: libxml-security-java, Ubuntu:25.10: libxml-security-java, Ubuntu:26.04:LTS: libxml-security-java&lt;/p&gt;
&lt;p&gt;All versions of Apache Santuario - XML Security for Java prior to 2.2.6, 2.3.4, and 3.0.3, when using the JSR 105 API, are vulnerable to an issue where a private key may be disclosed in log files when generating an XML Signature and logging with debug level is enabled. Users are recommended to upgrade to version 2.2.6, 2.3.4, or 3.0.3, which fixes this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-44483</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2943 — IBM WebSphere Application Server Liberty: Mehrere Schwachstellen ermöglichen die Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2943</link>
      <description>&lt;p&gt;Ein entfernter authentifizierter Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server Liberty ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter authentifizierter Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server Liberty ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2943</guid>
    </item>
  </channel>
</rss>
