<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 10:03:20 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-6890 — Journyx Unauthenticated Password Reset Bruteforce</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-6890</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Journyx (jtime), journyx&lt;/p&gt;
&lt;p&gt;Password reset tokens are generated using an insecure source of randomness. Attackers who know the username of the Journyx installation user can bruteforce the password reset and change the administrator password.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Journyx (jtime), journyx&lt;/p&gt;
&lt;p&gt;Password reset tokens are generated using an insecure source of randomness. Attackers who know the username of the Journyx installation user can bruteforce the password reset and change the administrator password.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-6890</guid>
    </item>
  </channel>
</rss>
