<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 06:43:03 +0000</lastBuildDate>
    <item>
      <title>bdu:2015-02788</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2015-02788</link>
      <description>bdu:2015-02788</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2015-02788</guid>
    </item>
    <item>
      <title>certa-2008-avi-555 — Plusieurs vulnérabilités ont été découvertes dans Mozilla Firefox et
permettent, entre autres, à une personne malveilla…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2008-avi-555</link>
      <description>certa-2008-avi-555</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2008-avi-555</guid>
    </item>
    <item>
      <title>EUVD-2026-129961</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-129961</link>
      <description>EUVD-2026-129961</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-129961</guid>
    </item>
    <item>
      <title>fkie_cve-2008-5012</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2008-5012</link>
      <description>&lt;p&gt;Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly change the source URI when processing a canvas element and an HTTP redirect, which allows remote attackers to bypass the same origin policy and access arbitrary images that are not directly accessible to the attacker.  NOTE: this issue can be leveraged to enumerate software on the client by performing redirections related to moz-icon.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly change the source URI when processing a canvas element and an HTTP redirect, which allows remote attackers to bypass the same origin policy and access arbitrary images that are not directly accessible to the attacker.  NOTE: this issue can be leveraged to enumerate software on the client by performing redirections related to moz-icon.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2008-5012</guid>
    </item>
    <item>
      <title>GHSA-hfvm-r385-4pvq</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hfvm-r385-4pvq</link>
      <description>&lt;p&gt;Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly change the source URI when processing a canvas element and an HTTP redirect, which allows remote attackers to bypass the same origin policy and access arbitrary images that are not directly accessible to the attacker.  NOTE: this issue can be leveraged to enumerate software on the client by performing redirections related to moz-icon.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly change the source URI when processing a canvas element and an HTTP redirect, which allows remote attackers to bypass the same origin policy and access arbitrary images that are not directly accessible to the attacker.  NOTE: this issue can be leveraged to enumerate software on the client by performing redirections related to moz-icon.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hfvm-r385-4pvq</guid>
    </item>
    <item>
      <title>gsd-2008-5012</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2008-5012</link>
      <description>gsd-2008-5012</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2008-5012</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10601-1 — MozillaThunderbird-91.1.1-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10601-1</link>
      <description>&lt;p&gt;MozillaThunderbird-91.1.1-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaThunderbird-91.1.1-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10601-1</guid>
    </item>
    <item>
      <title>RHSA-2008:0976 — Red Hat Security Advisory: thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2008:0976</link>
      <description>&lt;p&gt;Mozilla Image stealing via canvas and HTTP redirect Mozilla crash and remote code execution via __proto__ tampering Mozilla crash with evidence of memory corruption Mozilla crash with evidence of memory corruption Mozilla crash with evidence of memory corruption Mozilla crash and remote code execution in nsFrameManager nsXMLHttpRequest:: NotifyEventListeners() same-origin violation Mozilla parsing error in E4X default namespace security flaw&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla Image stealing via canvas and HTTP redirect Mozilla crash and remote code execution via __proto__ tampering Mozilla crash with evidence of memory corruption Mozilla crash with evidence of memory corruption Mozilla crash with evidence of memory corruption Mozilla crash and remote code execution in nsFrameManager nsXMLHttpRequest:: NotifyEventListeners() same-origin violation Mozilla parsing error in E4X default namespace security flaw&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2008:0976</guid>
    </item>
  </channel>
</rss>
