<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 19:57:16 +0000</lastBuildDate>
    <item>
      <title>ALSA-2024:1141 — Moderate: mysql security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2024:1141</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: mysql, AlmaLinux:9: mysql-common, AlmaLinux:9: mysql-devel, AlmaLinux:9: mysql-errmsg, AlmaLinux:9: mysql-libs, AlmaLinux:9: mysql-server, AlmaLinux:9: mysql-test&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* mysql: InnoDB unspecified vulnerability (CPU Apr 2023) (CVE-2023-21911)
* mysql: Server: DDL unspecified vulnerability (CPU Apr 2023) (CVE-2023-21919, CVE-2023-21929, CVE-2023-21933)
* mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2023) (CVE-2023-21920, CVE-2023-21935, CVE-2023-21945, CVE-2023-21946, CVE-2023-21976, CVE-2023-21977, CVE-2023-21982)
* mysql: Server: Components Services unspecified vulnerability (CPU Apr 2023) (CVE-2023-21940, CVE-2023-21947, CVE-2023-21962)
* mysql: Server: Partition unspecified vulnerability (CPU Apr 2023) (CVE-2023-21953)
* mysql: Server: Partition unspecified vulnerability (CPU Apr 2023) (CVE-2023-21955)
* mysql: Server: JSON unspecified vulnerability (CPU Apr 2023) (CVE-2023-21966)
* mysql: Server: DML unspecified vulnerability (CPU Apr 2023) (CVE-2023-21972)
* mysql: Client programs unspecified vulnerability (CPU Apr 2023) (CVE-2023-21980)
* mysql: Server: Replication unspecified vulnerability (CPU Jul 2023) (CVE-2023-22005, CVE-2023-22007, CVE-2023-22057)
* mysql: InnoDB unspecified vulnerability (CPU Jul 2023) (CVE-2023-22008)
* mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2023) (CVE-2023-22032, CVE-2023-22059, CVE-2023-22064, CVE-2023-22065, CVE-2023-22070, CVE-2023-22078, CVE-2023-22079, CVE-2023-22092, CVE-2023-22103, CVE-2023-22110, CVE-2…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: mysql, AlmaLinux:9: mysql-common, AlmaLinux:9: mysql-devel, AlmaLinux:9: mysql-errmsg, AlmaLinux:9: mysql-libs, AlmaLinux:9: mysql-server, AlmaLinux:9: mysql-test&lt;/p&gt;
&lt;p&gt;MySQL is a multi-user, multi-threaded SQL database server. It consists of the MySQL server daemon (mysqld) and many client programs and libraries.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* mysql: InnoDB unspecified vulnerability (CPU Apr 2023) (CVE-2023-21911)
* mysql: Server: DDL unspecified vulnerability (CPU Apr 2023) (CVE-2023-21919, CVE-2023-21929, CVE-2023-21933)
* mysql: Server: Optimizer unspecified vulnerability (CPU Apr 2023) (CVE-2023-21920, CVE-2023-21935, CVE-2023-21945, CVE-2023-21946, CVE-2023-21976, CVE-2023-21977, CVE-2023-21982)
* mysql: Server: Components Services unspecified vulnerability (CPU Apr 2023) (CVE-2023-21940, CVE-2023-21947, CVE-2023-21962)
* mysql: Server: Partition unspecified vulnerability (CPU Apr 2023) (CVE-2023-21953)
* mysql: Server: Partition unspecified vulnerability (CPU Apr 2023) (CVE-2023-21955)
* mysql: Server: JSON unspecified vulnerability (CPU Apr 2023) (CVE-2023-21966)
* mysql: Server: DML unspecified vulnerability (CPU Apr 2023) (CVE-2023-21972)
* mysql: Client programs unspecified vulnerability (CPU Apr 2023) (CVE-2023-21980)
* mysql: Server: Replication unspecified vulnerability (CPU Jul 2023) (CVE-2023-22005, CVE-2023-22007, CVE-2023-22057)
* mysql: InnoDB unspecified vulnerability (CPU Jul 2023) (CVE-2023-22008)
* mysql: Server: Optimizer unspecified vulnerability (CPU Oct 2023) (CVE-2023-22032, CVE-2023-22059, CVE-2023-22064, CVE-2023-22065, CVE-2023-22070, CVE-2023-22078, CVE-2023-22079, CVE-2023-22092, CVE-2023-22103, CVE-2023-22110, CVE-2…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2024:1141</guid>
    </item>
    <item>
      <title>EUVD-2026-255508</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-255508</link>
      <description>EUVD-2026-255508</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-255508</guid>
    </item>
    <item>
      <title>fkie_cve-2024-2097</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-2097</link>
      <description>&lt;p&gt;An authenticated malicious client can send a special LINQ query
to execute arbitrary code remotely (RCE) on the SCM server
from List control, and execute the arbitrary code on the same
system where SCMArchivedEventViewerTool is installed in the
case of SCM Tools.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An authenticated malicious client can send a special LINQ query
to execute arbitrary code remotely (RCE) on the SCM server
from List control, and execute the arbitrary code on the same
system where SCMArchivedEventViewerTool is installed in the
case of SCM Tools.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-2097</guid>
    </item>
    <item>
      <title>GHSA-x6rr-6p9v-45m4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x6rr-6p9v-45m4</link>
      <description>&lt;p&gt;Authenticated List control client can execute the LINQ query in SCM Server to present event as list for operator. An authenticated malicious client can send special LINQ query to execute arbitrary code remotely (RCE) on the SCM Server that an attacker otherwise does not have authorization to do.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Authenticated List control client can execute the LINQ query in SCM Server to present event as list for operator. An authenticated malicious client can send special LINQ query to execute arbitrary code remotely (RCE) on the SCM Server that an attacker otherwise does not have authorization to do.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x6rr-6p9v-45m4</guid>
    </item>
    <item>
      <title>gsd-2024-2097</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-2097</link>
      <description>gsd-2024-2097</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-2097</guid>
    </item>
    <item>
      <title>ICSA-24-116-02 — Hitachi Energy MACH SCM (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-24-116-02</link>
      <description>&lt;p&gt;Hitachi Energy is aware of LINQ query related vulnerabilities that affect MACH SCM product versions listed below. Authenticated malicious clients successfully exploiting these vulnerabilities could execute arbitrary code that an attacker otherwise does not have authorization to do. Please refer to the Recommended Immediate Actions for information about mitigation and remediation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Hitachi Energy is aware of LINQ query related vulnerabilities that affect MACH SCM product versions listed below. Authenticated malicious clients successfully exploiting these vulnerabilities could execute arbitrary code that an attacker otherwise does not have authorization to do. Please refer to the Recommended Immediate Actions for information about mitigation and remediation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-24-116-02</guid>
    </item>
  </channel>
</rss>
