<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:06:49 +0000</lastBuildDate>
    <item>
      <title>certa-2012-avi-455 — Deux vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;PostgreSQL&lt;/span&gt;. Leur exploitation réussie permet
not…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2012-avi-455</link>
      <description>certa-2012-avi-455</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2012-avi-455</guid>
    </item>
    <item>
      <title>EUVD-2026-111832</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-111832</link>
      <description>EUVD-2026-111832</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-111832</guid>
    </item>
    <item>
      <title>fkie_cve-2012-3488</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2012-3488</link>
      <description>&lt;p&gt;The libxslt support in contrib/xml2 in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 does not properly restrict access to files and URLs, which allows remote authenticated users to modify data, obtain sensitive information, or trigger outbound traffic to arbitrary external hosts by leveraging (1) stylesheet commands that are permitted by the libxslt security options or (2) an xslt_process feature, related to an XML External Entity (aka XXE) issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The libxslt support in contrib/xml2 in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 does not properly restrict access to files and URLs, which allows remote authenticated users to modify data, obtain sensitive information, or trigger outbound traffic to arbitrary external hosts by leveraging (1) stylesheet commands that are permitted by the libxslt security options or (2) an xslt_process feature, related to an XML External Entity (aka XXE) issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2012-3488</guid>
    </item>
    <item>
      <title>GHSA-8wqv-9478-cg4h</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8wqv-9478-cg4h</link>
      <description>&lt;p&gt;The libxslt support in contrib/xml2 in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 does not properly restrict access to files and URLs, which allows remote authenticated users to modify data, obtain sensitive information, or trigger outbound traffic to arbitrary external hosts by leveraging (1) stylesheet commands that are permitted by the libxslt security options or (2) an xslt_process feature, related to an XML External Entity (aka XXE) issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The libxslt support in contrib/xml2 in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 does not properly restrict access to files and URLs, which allows remote authenticated users to modify data, obtain sensitive information, or trigger outbound traffic to arbitrary external hosts by leveraging (1) stylesheet commands that are permitted by the libxslt security options or (2) an xslt_process feature, related to an XML External Entity (aka XXE) issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8wqv-9478-cg4h</guid>
    </item>
    <item>
      <title>gsd-2012-3488</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2012-3488</link>
      <description>gsd-2012-3488</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2012-3488</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10030-1 — postgresql94-9.4.10-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10030-1</link>
      <description>&lt;p&gt;postgresql94-9.4.10-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;postgresql94-9.4.10-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10030-1</guid>
    </item>
    <item>
      <title>RHSA-2012:1263 — Red Hat Security Advisory: postgresql and postgresql84 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2012:1263</link>
      <description>&lt;p&gt;module): XXE by applying XSL stylesheet to the document postgresql: File disclosure through XXE in xmlparse by DTD validation&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;module): XXE by applying XSL stylesheet to the document postgresql: File disclosure through XXE in xmlparse by DTD validation&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2012:1263</guid>
    </item>
  </channel>
</rss>
