<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 19:34:21 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-1094 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1094</link>
      <description>certfr-2026-avi-1094</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-1094</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-AB17721 — Security fixes in solr 10.0.0-r6</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-ab17721</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: solr&lt;/p&gt;
&lt;p&gt;Package solr version 10.0.0-r6 fixes 4 vulnerabilities: CVE-2026-8384, CVE-2026-6790, CVE-2026-10051, CVE-2026-10050&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: solr&lt;/p&gt;
&lt;p&gt;Package solr version 10.0.0-r6 fixes 4 vulnerabilities: CVE-2026-8384, CVE-2026-6790, CVE-2026-10051, CVE-2026-10050&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-ab17721</guid>
    </item>
    <item>
      <title>EUVD-2026-336398</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-336398</link>
      <description>EUVD-2026-336398</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-336398</guid>
    </item>
    <item>
      <title>fkie_cve-2026-10051</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-10051</link>
      <description>&lt;p&gt;In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection.
Subsequent request that do not have trailers report the trailers of the first request.
Subsequent request that do have trailers report the union of trailers of the first request and the current request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection.
Subsequent request that do not have trailers report the trailers of the first request.
Subsequent request that do have trailers report the union of trailers of the first request and the current request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-10051</guid>
    </item>
    <item>
      <title>GHSA-f4v5-65jj-pcr2 — Eclipse Jetty: Cross-Request Leakage for trailers on HTTP/1.1 keep-alive connections</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f4v5-65jj-pcr2</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.eclipse.jetty:jetty-server&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;&amp;gt; FINDING — MEDIUM (HTTP/1.1 keep-alive connections with trailers)
&amp;gt; HttpConnection._trailers Cross-Request Leakage (Never Reset Between Requests)
&amp;gt; 
&amp;gt; Location:
&amp;gt;   jetty-core/jetty-server/src/main/java/org/eclipse/jetty/server/internal/
&amp;gt;   HttpConnection.java:107, 1157-1161, 1170
&amp;gt; 
&amp;gt; Detail:
&amp;gt;   _trailers (line 107) is a connection-scoped HttpFields.Mutable field.
&amp;gt;   parsedTrailer() (line 1157) populates it when request N carries HTTP trailers.
&amp;gt;   messageComplete() (line 1170) checks &amp;#34;if (_trailers != null)&amp;#34; — evaluates true
&amp;gt;   from request N&amp;#39;s data — and stamps it onto request N+1.
&amp;gt; 
&amp;gt;   Grep confirms: ZERO occurrences of &amp;#34;_trailers = null&amp;#34; in entire HttpConnection.java.
&amp;gt; 
&amp;gt;   Scenario:
&amp;gt;     Request N:   POST /upload (trailers: X-Checksum: abc123)
&amp;gt;     Request N+1: GET  /data   (no trailers)
&amp;gt;     app: request.getTrailers() on N+1 → returns {X-Checksum: abc123} ← STALE
&amp;gt; 
&amp;gt;   Application logic branching on getTrailers() != null produces incorrect behavior.
&amp;gt;   Not cross-connection (same keep-alive connection only).
&amp;gt; 
&amp;gt;   More dangerous scenario: TOCTOU — trailer passes check, target swapped before use.&lt;/p&gt;
&lt;p&gt;### Workarounds
Do not rely on HTTP request trailers for security-sensitive logic, or disable persistent connections by closing the connection after each HTTP/1.1 request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.eclipse.jetty:jetty-server&lt;/p&gt;
&lt;p&gt;### Description&lt;/p&gt;
&lt;p&gt;&amp;gt; FINDING — MEDIUM (HTTP/1.1 keep-alive connections with trailers)
&amp;gt; HttpConnection._trailers Cross-Request Leakage (Never Reset Between Requests)
&amp;gt; 
&amp;gt; Location:
&amp;gt;   jetty-core/jetty-server/src/main/java/org/eclipse/jetty/server/internal/
&amp;gt;   HttpConnection.java:107, 1157-1161, 1170
&amp;gt; 
&amp;gt; Detail:
&amp;gt;   _trailers (line 107) is a connection-scoped HttpFields.Mutable field.
&amp;gt;   parsedTrailer() (line 1157) populates it when request N carries HTTP trailers.
&amp;gt;   messageComplete() (line 1170) checks &amp;#34;if (_trailers != null)&amp;#34; — evaluates true
&amp;gt;   from request N&amp;#39;s data — and stamps it onto request N+1.
&amp;gt; 
&amp;gt;   Grep confirms: ZERO occurrences of &amp;#34;_trailers = null&amp;#34; in entire HttpConnection.java.
&amp;gt; 
&amp;gt;   Scenario:
&amp;gt;     Request N:   POST /upload (trailers: X-Checksum: abc123)
&amp;gt;     Request N+1: GET  /data   (no trailers)
&amp;gt;     app: request.getTrailers() on N+1 → returns {X-Checksum: abc123} ← STALE
&amp;gt; 
&amp;gt;   Application logic branching on getTrailers() != null produces incorrect behavior.
&amp;gt;   Not cross-connection (same keep-alive connection only).
&amp;gt; 
&amp;gt;   More dangerous scenario: TOCTOU — trailer passes check, target swapped before use.&lt;/p&gt;
&lt;p&gt;### Workarounds
Do not rely on HTTP request trailers for security-sensitive logic, or disable persistent connections by closing the connection after each HTTP/1.1 request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f4v5-65jj-pcr2</guid>
    </item>
    <item>
      <title>RHSA-2026:54435 — Red Hat Security Advisory: Streams for Apache Kafka 3.2.1 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:54435</link>
      <description>&lt;p&gt;eclipse-vertx/vert.x: eclipse-vertx/vert.x: Denial of Service via TLS handshake with wildcard server name jetty: Eclipse Jetty: Information disclosure due to retained HTTP/1.1 trailers across connections vertx-core: Eclipse Vert.x: Information disclosure via improper handling of HTTP 30x redirects io.vertx/vertx-web: Eclipse Vert.x Web Client: Information disclosure via improper cookie domain validation io.quarkus/quarkus-rest: io.quarkus/quarkus-vertx-http: io.quarkus.resteasy.reactive/resteasy-reactive: Quarkus REST - Unbounded multipart MIME part-header accumulation allows remote OOM denial of service crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME org.apache.logging.log4j/log4j-core: Apache Log4j Core: Log injection via CRLF sequences due to configuration attribute renames org.apache.logging.log4j/log4j-core: Apache Log4j Core: Invalid XML output causes denial of service in logging org.apache.logging.log4j: Apache Log4j JsonTemplateLayout: Denial of Service via invalid JSON output Apache Kafka Clients: Apache Kafka Clients: Information disclosure and data corruption due to race condition in producer buffer management golang.org/x/net/idna: golang: net/http: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;eclipse-vertx/vert.x: eclipse-vertx/vert.x: Denial of Service via TLS handshake with wildcard server name jetty: Eclipse Jetty: Information disclosure due to retained HTTP/1.1 trailers across connections vertx-core: Eclipse Vert.x: Information disclosure via improper handling of HTTP 30x redirects io.vertx/vertx-web: Eclipse Vert.x Web Client: Information disclosure via improper cookie domain validation io.quarkus/quarkus-rest: io.quarkus/quarkus-vertx-http: io.quarkus.resteasy.reactive/resteasy-reactive: Quarkus REST - Unbounded multipart MIME part-header accumulation allows remote OOM denial of service crypto/x509: golang: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME org.apache.logging.log4j/log4j-core: Apache Log4j Core: Log injection via CRLF sequences due to configuration attribute renames org.apache.logging.log4j/log4j-core: Apache Log4j Core: Invalid XML output causes denial of service in logging org.apache.logging.log4j: Apache Log4j JsonTemplateLayout: Denial of Service via invalid JSON output Apache Kafka Clients: Apache Kafka Clients: Information disclosure and data corruption due to race condition in producer buffer management golang.org/x/net/idna: golang: net/http: golang.org/x/net/idna: Privilege escalation via incorrect Punycode label processing…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:54435</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-10051</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-10051</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: jetty9, Ubuntu:18.04:LTS: jetty9, Ubuntu:20.04:LTS: jetty9, Ubuntu:22.04:LTS: jetty9, Ubuntu:24.04:LTS: jetty9, Ubuntu:26.04:LTS: jetty12, Ubuntu:26.04:LTS: jetty9&lt;/p&gt;
&lt;p&gt;In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection. Subsequent request that do not have trailers report the trailers of the first request. Subsequent request that do have trailers report the union of trailers of the first request and the current request.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: jetty9, Ubuntu:18.04:LTS: jetty9, Ubuntu:20.04:LTS: jetty9, Ubuntu:22.04:LTS: jetty9, Ubuntu:24.04:LTS: jetty9, Ubuntu:26.04:LTS: jetty12, Ubuntu:26.04:LTS: jetty9&lt;/p&gt;
&lt;p&gt;In Eclipse Jetty, a first HTTP/1.1 request with trailers causes the server to retain the trailers in subsequent requests performed over the same connection. Subsequent request that do not have trailers report the trailers of the first request. Subsequent request that do have trailers report the union of trailers of the first request and the current request.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-10051</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2314 — Eclipse Jetty: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2314</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Eclipse Jetty ausnutzen, um einen Denial of Service Angriff durchzuführen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Eclipse Jetty ausnutzen, um einen Denial of Service Angriff durchzuführen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2314</guid>
    </item>
  </channel>
</rss>
