<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:32:11 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-351148</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-351148</link>
      <description>EUVD-2026-351148</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-351148</guid>
    </item>
    <item>
      <title>fkie_cve-2024-50312</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-50312</link>
      <description>&lt;p&gt;A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure to this flaw increases the attack surface, as it can facilitate the discovery of flaws or errors specific to the application&amp;#39;s GraphQL implementation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure to this flaw increases the attack surface, as it can facilitate the discovery of flaws or errors specific to the application&amp;#39;s GraphQL implementation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-50312</guid>
    </item>
    <item>
      <title>GHSA-7f25-p8gc-hxqh</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7f25-p8gc-hxqh</link>
      <description>&lt;p&gt;A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure to this flaw increases the attack surface, as it can facilitate the discovery of flaws or errors specific to the application&amp;#39;s GraphQL implementation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in GraphQL due to improper access controls on the GraphQL introspection query. This flaw allows unauthorized users to retrieve a comprehensive list of available queries and mutations. Exposure to this flaw increases the attack surface, as it can facilitate the discovery of flaws or errors specific to the application&amp;#39;s GraphQL implementation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7f25-p8gc-hxqh</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:0350-1 — Security update for govulncheck-vulndb</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:0350-1</link>
      <description>&lt;p&gt;Security update for govulncheck-vulndb&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for govulncheck-vulndb&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:0350-1</guid>
    </item>
    <item>
      <title>RHSA-2024:6122 — Red Hat Security Advisory: OpenShift Container Platform 4.18.1 bug fix and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:6122</link>
      <description>&lt;p&gt;PostCSS: Improper input validation in PostCSS golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS containers/image: digest type does not guarantee valid type go-retryablehttp: url might write sensitive information to log file openshift-console: OAuth2 insufficient state parameter entropy openshift/builder: Path traversal allows command injection in privileged BuildContainer using docker build strategy Podman: Buildah: cri-o: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass rsync: Info Leak via Uninitialized Stack Contents ose-olm-catalogd-container: incomplete fix for rapid reset (CVE-2023-39325/CVE-2023-44487) cross-spawn: regular expression denial of service golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON axios: axios: Server-Side Request Forgery Bare Metal Operator: BMO can expose particularly named secrets from other namespaces via BMH CRD path-to-regexp: Backtracking regular expressions cause ReDoS golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html openshift-controller-manager: Elevated Build Pods Can Lead to Node Compromise in OpenShift openstack-ironic: Lack of checksum validation on images dompurify: DOMPurify vulnerable to tampering by prototype pollution GraphQL: Denial of Service (DoS) v…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PostCSS: Improper input validation in PostCSS golang: net/http, x/net/http2: unlimited number of CONTINUATION frames causes DoS containers/image: digest type does not guarantee valid type go-retryablehttp: url might write sensitive information to log file openshift-console: OAuth2 insufficient state parameter entropy openshift/builder: Path traversal allows command injection in privileged BuildContainer using docker build strategy Podman: Buildah: cri-o: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library pam: Improper Hostname Interpretation in pam_access Leads to Access Control Bypass rsync: Info Leak via Uninitialized Stack Contents ose-olm-catalogd-container: incomplete fix for rapid reset (CVE-2023-39325/CVE-2023-44487) cross-spawn: regular expression denial of service golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON axios: axios: Server-Side Request Forgery Bare Metal Operator: BMO can expose particularly named secrets from other namespaces via BMH CRD path-to-regexp: Backtracking regular expressions cause ReDoS golang.org/x/net/html: Non-linear parsing of case-insensitive content in golang.org/x/net/html openshift-controller-manager: Elevated Build Pods Can Lead to Node Compromise in OpenShift openstack-ironic: Lack of checksum validation on images dompurify: DOMPurify vulnerable to tampering by prototype pollution GraphQL: Denial of Service (DoS) v…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:6122</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:3911-1 — Security update for govulncheck-vulndb</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:3911-1</link>
      <description>&lt;p&gt;Security update for govulncheck-vulndb&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for govulncheck-vulndb&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:3911-1</guid>
    </item>
  </channel>
</rss>
