<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 14:58:39 +0000</lastBuildDate>
    <item>
      <title>cnvd-2017-31284</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-31284</link>
      <description>cnvd-2017-31284</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-31284</guid>
    </item>
    <item>
      <title>EUVD-2026-77374</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-77374</link>
      <description>EUVD-2026-77374</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-77374</guid>
    </item>
    <item>
      <title>fkie_cve-2017-12868</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-12868</link>
      <description>&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-12868</guid>
    </item>
    <item>
      <title>GHSA-j96g-47x2-46hv — SimpleSAMLphp Session fixation issue and authentication bypass in the authcrypt module</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j96g-47x2-46hv</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: simplesamlphp/simplesamlphp&lt;/p&gt;
&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Packagist: simplesamlphp/simplesamlphp&lt;/p&gt;
&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j96g-47x2-46hv</guid>
    </item>
    <item>
      <title>gsd-2017-12868</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-12868</link>
      <description>gsd-2017-12868</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-12868</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-12868</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-12868</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: simplesamlphp&lt;/p&gt;
&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: simplesamlphp&lt;/p&gt;
&lt;p&gt;The secureCompare method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.13 and earlier, when used with PHP before 5.6, allows attackers to conduct session fixation attacks or possibly bypass authentication by leveraging missing character conversions before an XOR operation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-12868</guid>
    </item>
  </channel>
</rss>
