<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 02:25:17 +0000</lastBuildDate>
    <item>
      <title>certa-2011-avi-454 — De multiples vulnérabilités présentes dans le produit &lt;span
class="textit"&gt;Apache Tomcat&lt;/span&gt; ont été corrigées. Elle…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2011-avi-454</link>
      <description>certa-2011-avi-454</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2011-avi-454</guid>
    </item>
    <item>
      <title>EUVD-2026-115313</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-115313</link>
      <description>EUVD-2026-115313</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-115313</guid>
    </item>
    <item>
      <title>fkie_cve-2011-2204</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2011-2204</link>
      <description>&lt;p&gt;Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.17, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2011-2204</guid>
    </item>
    <item>
      <title>GHSA-c57p-3v2g-w9rg — Insertion of Sensitive Information into Log File in Apache Tomcat</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c57p-3v2g-w9rg</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.19, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.&lt;/p&gt;
&lt;p&gt;This issue was fixed in Apache Tomcat 7.0.17 but the release votes for the 7.0.17 and 7.0.18 release candidates did not pass. Therefore, users must download 7.0.19 to obtain a version that includes a fix.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.apache.tomcat:tomcat&lt;/p&gt;
&lt;p&gt;Apache Tomcat 5.5.x before 5.5.34, 6.x before 6.0.33, and 7.x before 7.0.19, when the MemoryUserDatabase is used, creates log entries containing passwords upon encountering errors in JMX user creation, which allows local users to obtain sensitive information by reading a log file.&lt;/p&gt;
&lt;p&gt;This issue was fixed in Apache Tomcat 7.0.17 but the release votes for the 7.0.17 and 7.0.18 release candidates did not pass. Therefore, users must download 7.0.19 to obtain a version that includes a fix.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c57p-3v2g-w9rg</guid>
    </item>
    <item>
      <title>gsd-2011-2204</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2011-2204</link>
      <description>gsd-2011-2204</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2011-2204</guid>
    </item>
    <item>
      <title>RHSA-2011:1780 — Red Hat Security Advisory: tomcat6 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2011:1780</link>
      <description>&lt;p&gt;tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: password disclosure vulnerability tomcat: security manager restrictions bypass tomcat: authentication bypass and information disclosure tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: password disclosure vulnerability tomcat: security manager restrictions bypass tomcat: authentication bypass and information disclosure tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication tomcat: Multiple weaknesses in HTTP DIGEST authentication&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2011:1780</guid>
    </item>
  </channel>
</rss>
