<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:54:11 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-11869</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-11869</link>
      <description>bdu:2026-11869</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-11869</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0810 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0810</link>
      <description>certfr-2026-avi-0810</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0810</guid>
    </item>
    <item>
      <title>CLEANSTART-2026-CE10830 — Security fix for CVE-2026-42402 applied in: wildfly 39.0.1-r0</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-ce10830</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: wildfly&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the wildfly package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: wildfly&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the wildfly package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-ce10830</guid>
    </item>
    <item>
      <title>EUVD-2026-308198</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-308198</link>
      <description>EUVD-2026-308198</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-308198</guid>
    </item>
    <item>
      <title>fkie_cve-2026-42402</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-42402</link>
      <description>&lt;p&gt;Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.&lt;/p&gt;
&lt;p&gt;Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.&lt;/p&gt;
&lt;p&gt;Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-42402</guid>
    </item>
    <item>
      <title>GHSA-g36m-9g3m-2vmp — Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g36m-9g3m-2vmp</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.neethi:neethi&lt;/p&gt;
&lt;p&gt;Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.&lt;/p&gt;
&lt;p&gt;Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.neethi:neethi&lt;/p&gt;
&lt;p&gt;Apache Neethi is vulnerable to a Denial of Service attack through algorithmic complexity in policy normalization. Specially crafted WS-Policy documents can trigger an exponential Cartesian cross-product expansion during the normalization process, causing unbounded memory allocation that exhausts the JVM heap. This occurs when the normalization process generates an excessive number of policy alternatives without bounds, leading to runtime memory exhaustion.&lt;/p&gt;
&lt;p&gt;Users should upgrade to 3.2.2 which limits the maximum number of normalized policy alternatives.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g36m-9g3m-2vmp</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2050 — IBM WebSphere Application Server und Application Server Liberty: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2050</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server Liberty und IBM WebSphere Application Server ausnutzen, um Dateien zu manipulieren, um einen Cross-Site Scripting Angriff durchzuführen, um beliebigen Programmcode auszuführen, um Informationen offenzulegen, und um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM WebSphere Application Server Liberty und IBM WebSphere Application Server ausnutzen, um Dateien zu manipulieren, um einen Cross-Site Scripting Angriff durchzuführen, um beliebigen Programmcode auszuführen, um Informationen offenzulegen, und um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2050</guid>
    </item>
  </channel>
</rss>
