<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:36:58 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-02606</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-02606</link>
      <description>bdu:2022-02606</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-02606</guid>
    </item>
    <item>
      <title>certfr-2022-avi-928 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-928</link>
      <description>certfr-2022-avi-928</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-928</guid>
    </item>
    <item>
      <title>cnvd-2016-06416</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-06416</link>
      <description>cnvd-2016-06416</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-06416</guid>
    </item>
    <item>
      <title>EUVD-2026-117114</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-117114</link>
      <description>EUVD-2026-117114</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-117114</guid>
    </item>
    <item>
      <title>fkie_cve-2011-4969</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2011-4969</link>
      <description>&lt;p&gt;Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2011-4969</guid>
    </item>
    <item>
      <title>GHSA-579v-mp3v-rrw5 — jQuery vulnerable to Cross-Site Scripting (XSS)</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-579v-mp3v-rrw5</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: jquery, NuGet: jQuery, RubyGems: jquery-rails, Maven: org.webjars.npm:jquery&lt;/p&gt;
&lt;p&gt;Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: jquery, NuGet: jQuery, RubyGems: jquery-rails, Maven: org.webjars.npm:jquery&lt;/p&gt;
&lt;p&gt;Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-579v-mp3v-rrw5</guid>
    </item>
    <item>
      <title>gsd-2011-4969</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2011-4969</link>
      <description>gsd-2011-4969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2011-4969</guid>
    </item>
    <item>
      <title>ICSA-22-097-01 — Pepperl+Fuchs WirelessHART-Gateway</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-097-01</link>
      <description>&lt;p&gt;The affected product allows active SSH and telnet services with hard-coded credentials.CVE-2021-34565 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). jQuery 3.0.0-rc.1 is vulnerable to a denial-of-service condition due to removing a logic a lowercased attribute names. Any attribute using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.CVE-2016-10707 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). If the application is not externally accessible or uses IP-based access restrictions, attackers can use DNS rebinding to bypass any IP or firewall-based access restrictions by proxying through their target&amp;#39;s browser. This vulnerability only affects Versions 3.0.7 through 3.0.8.CVE-2021-34561 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). The filename parameter is vulnerable to unauthenticated path traversal attacks, enabling read access to arbitrary files on the server. This vulnerability only affects Version 3.0.7.CVE-2021-33555 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). jQuery Version 1.4.2 allows…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The affected product allows active SSH and telnet services with hard-coded credentials.CVE-2021-34565 has been assigned to this vulnerability. A CVSS v3 base score of 9.8 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). jQuery 3.0.0-rc.1 is vulnerable to a denial-of-service condition due to removing a logic a lowercased attribute names. Any attribute using a mixed-cased name for boolean attributes goes into an infinite recursion, exceeding the stack call limit.CVE-2016-10707 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). If the application is not externally accessible or uses IP-based access restrictions, attackers can use DNS rebinding to bypass any IP or firewall-based access restrictions by proxying through their target&amp;#39;s browser. This vulnerability only affects Versions 3.0.7 through 3.0.8.CVE-2021-34561 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H). The filename parameter is vulnerable to unauthenticated path traversal attacks, enabling read access to arbitrary files on the server. This vulnerability only affects Version 3.0.7.CVE-2021-33555 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N). jQuery Version 1.4.2 allows…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-097-01</guid>
    </item>
    <item>
      <title>msrc_CVE-2011-4969 — Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows re…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2011-4969</link>
      <description>msrc_CVE-2011-4969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2011-4969</guid>
    </item>
    <item>
      <title>VDE-2021-027 — Pepperl+Fuchs: WirelessHART-Gateway - Vulnerability may allow remote attackers to cause a Denial Of Service</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2021-027</link>
      <description>&lt;p&gt;Critical vulnerabilities have been discovered in the product and in the utilized components jQuery by jQuery Team and TLS Version 1.0/1.1.&lt;/p&gt;
&lt;p&gt;The impact of the vulnerabilities on the affected device may result in&lt;/p&gt;
&lt;p&gt;- denial of service
- remote code execution
- code exposure&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Critical vulnerabilities have been discovered in the product and in the utilized components jQuery by jQuery Team and TLS Version 1.0/1.1.&lt;/p&gt;
&lt;p&gt;The impact of the vulnerabilities on the affected device may result in&lt;/p&gt;
&lt;p&gt;- denial of service
- remote code execution
- code exposure&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2021-027</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1752 — IBM Business Automation Workflow: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1752</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM Business Automation Workflow ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM Business Automation Workflow ausnutzen, um Sicherheitsvorkehrungen zu umgehen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1752</guid>
    </item>
  </channel>
</rss>
