<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 10 Oct 2026 10:39:47 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-349546</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-349546</link>
      <description>EUVD-2026-349546</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-349546</guid>
    </item>
    <item>
      <title>fkie_cve-2024-10973</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-10973</link>
      <description>&lt;p&gt;A vulnerability was found in Keycloak. The environment option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the JGroups replication configuration is always used in plain text which can allow an attacker that has access to adjacent networks related to JGroups to read sensitive information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in Keycloak. The environment option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the JGroups replication configuration is always used in plain text which can allow an attacker that has access to adjacent networks related to JGroups to read sensitive information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-10973</guid>
    </item>
    <item>
      <title>GHSA-g6qq-c9f9-2772 — Keycloak on Quarkus CLI option for encrypted JGroups ignored</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g6qq-c9f9-2772</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-quarkus-server&lt;/p&gt;
&lt;p&gt;The env option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the jgroups replication configuration is always used in plain. This option worked before in 24 and 22. More info in public issue https://github.com/keycloak/keycloak/issues/34644.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-quarkus-server&lt;/p&gt;
&lt;p&gt;The env option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the jgroups replication configuration is always used in plain. This option worked before in 24 and 22. More info in public issue https://github.com/keycloak/keycloak/issues/34644.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g6qq-c9f9-2772</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-3719 — Keycloak: Schwachstelle ermöglicht Offenlegung von Informationen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3719</link>
      <description>&lt;p&gt;Ein Angreifer aus einem angrenzenden Netzwerk kann eine Schwachstelle in Keycloak ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer aus einem angrenzenden Netzwerk kann eine Schwachstelle in Keycloak ausnutzen, um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3719</guid>
    </item>
  </channel>
</rss>
