<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Thu, 08 Oct 2026 23:24:44 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-228728</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-228728</link>
      <description>EUVD-2026-228728</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-228728</guid>
    </item>
    <item>
      <title>fkie_cve-2022-48195</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-48195</link>
      <description>&lt;p&gt;An issue was discovered in Mellium mellium.im/sasl before 0.3.1. When performing SCRAM-based SASL authentication, if the remote end advertises support for channel binding, no random nonce is generated (instead, the nonce is empty). This causes authentication to fail in the best case, but (if paired with a remote end that does not validate the length of the nonce) could lead to insufficient randomness being used during authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in Mellium mellium.im/sasl before 0.3.1. When performing SCRAM-based SASL authentication, if the remote end advertises support for channel binding, no random nonce is generated (instead, the nonce is empty). This causes authentication to fail in the best case, but (if paired with a remote end that does not validate the length of the nonce) could lead to insufficient randomness being used during authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-48195</guid>
    </item>
    <item>
      <title>GHSA-gvfj-fxx3-j323 — mellium.im/sasl authentication failure due to insufficient nonce randomness</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gvfj-fxx3-j323</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: mellium.im/sasl&lt;/p&gt;
&lt;p&gt;An issue was discovered in Mellium mellium.im/sasl before 0.3.1. When performing SCRAM-based SASL authentication, if the remote end advertises support for channel binding, no random nonce is generated (instead, the nonce is empty). This causes authentication to fail in the best case, but (if paired with a remote end that does not validate the length of the nonce) could lead to insufficient randomness being used during authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: mellium.im/sasl&lt;/p&gt;
&lt;p&gt;An issue was discovered in Mellium mellium.im/sasl before 0.3.1. When performing SCRAM-based SASL authentication, if the remote end advertises support for channel binding, no random nonce is generated (instead, the nonce is empty). This causes authentication to fail in the best case, but (if paired with a remote end that does not validate the length of the nonce) could lead to insufficient randomness being used during authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gvfj-fxx3-j323</guid>
    </item>
    <item>
      <title>gsd-2022-48195</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-48195</link>
      <description>gsd-2022-48195</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-48195</guid>
    </item>
  </channel>
</rss>
