<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 17:33:09 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-15722</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-15722</link>
      <description>EUVD-2026-15722</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-15722</guid>
    </item>
    <item>
      <title>fkie_cve-2022-28366</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-28366</link>
      <description>&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-28366</guid>
    </item>
    <item>
      <title>GHSA-g9hh-vvx3-v37v — Denial of service in HtmlUnit-Neko</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g9hh-vvx3-v37v</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.sourceforge.htmlunit:neko-htmlunit&lt;/p&gt;
&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24939.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: net.sourceforge.htmlunit:neko-htmlunit&lt;/p&gt;
&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24939.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g9hh-vvx3-v37v</guid>
    </item>
    <item>
      <title>gsd-2022-28366</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-28366</link>
      <description>gsd-2022-28366</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-28366</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12022-1 — nekohtml-1.9.22.noko2-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12022-1</link>
      <description>&lt;p&gt;nekohtml-1.9.22.noko2-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nekohtml-1.9.22.noko2-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12022-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-28366</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-28366</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libowasp-antisamy-java, Ubuntu:18.04:LTS: libowasp-antisamy-java, Ubuntu:20.04:LTS: libowasp-antisamy-java, Ubuntu:22.04:LTS: libowasp-antisamy-java, Ubuntu:24.04:LTS: libowasp-antisamy-java, Ubuntu:25.10: libowasp-antisamy-java, Ubuntu:26.04:LTS: libowasp-antisamy-java&lt;/p&gt;
&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libowasp-antisamy-java, Ubuntu:18.04:LTS: libowasp-antisamy-java, Ubuntu:20.04:LTS: libowasp-antisamy-java, Ubuntu:22.04:LTS: libowasp-antisamy-java, Ubuntu:24.04:LTS: libowasp-antisamy-java, Ubuntu:25.10: libowasp-antisamy-java, Ubuntu:26.04:LTS: libowasp-antisamy-java&lt;/p&gt;
&lt;p&gt;Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-28366</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2993 — Atlassian Bamboo, Atlassian Bitbucket, Atlassian Confluence and Atlassian Jira Software: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2993</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Atlassian Bamboo, Atlassian Bitbucket, Atlassian Confluence und Atlassian Jira Software ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen offenzulegen oder einen Cross-Site-Scripting-Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Atlassian Bamboo, Atlassian Bitbucket, Atlassian Confluence und Atlassian Jira Software ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen, vertrauliche Informationen offenzulegen oder einen Cross-Site-Scripting-Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2993</guid>
    </item>
  </channel>
</rss>
