<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 22:31:05 +0000</lastBuildDate>
    <item>
      <title>cnvd-2021-39044</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-39044</link>
      <description>cnvd-2021-39044</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-39044</guid>
    </item>
    <item>
      <title>EUVD-2026-42318</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42318</link>
      <description>EUVD-2026-42318</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42318</guid>
    </item>
    <item>
      <title>fkie_cve-2020-14329</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-14329</link>
      <description>&lt;p&gt;A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /api/v2/labels/ endpoint. This flaw allows users from other organizations in the system to retrieve any label from the organization and also disclose organization names. The highest threat from this vulnerability is to confidentiality.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /api/v2/labels/ endpoint. This flaw allows users from other organizations in the system to retrieve any label from the organization and also disclose organization names. The highest threat from this vulnerability is to confidentiality.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-14329</guid>
    </item>
    <item>
      <title>GHSA-c7r9-mwvj-rr98</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c7r9-mwvj-rr98</link>
      <description>&lt;p&gt;A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /api/v2/labels/ endpoint. This flaw allows users from other organizations in the system to retrieve any label from the organization and also disclose organization names. The highest threat from this vulnerability is to confidentiality.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A data exposure flaw was found in Ansible Tower in versions before 3.7.2, where sensitive data can be exposed from the /api/v2/labels/ endpoint. This flaw allows users from other organizations in the system to retrieve any label from the organization and also disclose organization names. The highest threat from this vulnerability is to confidentiality.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c7r9-mwvj-rr98</guid>
    </item>
    <item>
      <title>gsd-2020-14329</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-14329</link>
      <description>gsd-2020-14329</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-14329</guid>
    </item>
    <item>
      <title>RHSA-2020:3328 — Red Hat Security Advisory: Red Hat Ansible Tower 3.7.2-1 - RHEL7 Container</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:3328</link>
      <description>&lt;p&gt;Tower: SSRF: Server Side Request Forgery on Credential Tower: SSRF: Server Side Request Forgery on webhooks Tower: Sensitive Data Exposure on Label Tower: Named URLs allow for testing the presence or absence of objects&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Tower: SSRF: Server Side Request Forgery on Credential Tower: SSRF: Server Side Request Forgery on webhooks Tower: Sensitive Data Exposure on Label Tower: Named URLs allow for testing the presence or absence of objects&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:3328</guid>
    </item>
  </channel>
</rss>
