<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 03:11:01 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-329848</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-329848</link>
      <description>EUVD-2026-329848</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-329848</guid>
    </item>
    <item>
      <title>fkie_cve-2026-57302</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-57302</link>
      <description>&lt;p&gt;Jenkins FitNesse Plugin 1.36 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller, where they can be viewed by users with Extended Read permission or access to the Jenkins controller file system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Jenkins FitNesse Plugin 1.36 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller, where they can be viewed by users with Extended Read permission or access to the Jenkins controller file system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-57302</guid>
    </item>
    <item>
      <title>GHSA-j4ph-wp3c-c37w — Jenkins FitNesse Plugin stores passwords unencrypted</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j4ph-wp3c-c37w</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.jenkins-ci.plugins:fitnesse&lt;/p&gt;
&lt;p&gt;Jenkins FitNesse Plugin 1.36 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller as part of its configuration.&lt;/p&gt;
&lt;p&gt;These passwords can be viewed by users with Item/Extended Read permission or access to the Jenkins controller file system.&lt;/p&gt;
&lt;p&gt;As of publication of this advisory, there is no fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.jenkins-ci.plugins:fitnesse&lt;/p&gt;
&lt;p&gt;Jenkins FitNesse Plugin 1.36 and earlier stores passwords unencrypted in job config.xml files on the Jenkins controller as part of its configuration.&lt;/p&gt;
&lt;p&gt;These passwords can be viewed by users with Item/Extended Read permission or access to the Jenkins controller file system.&lt;/p&gt;
&lt;p&gt;As of publication of this advisory, there is no fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j4ph-wp3c-c37w</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2074 — Jenkins Plugins: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2074</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Jenkins Plugins ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen zu manipulieren oder offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Jenkins Plugins ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen zu manipulieren oder offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2074</guid>
    </item>
  </channel>
</rss>
