<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 20:03:00 +0000</lastBuildDate>
    <item>
      <title>CVE-2026-40975</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-40975</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Spring Boot, Red Hat HawtIO HawtIO 4.4.0, Red Hat build of Apache Camel 4.18.1 for Spring Boot 3.5.14, Red Hat Data Grid 8.6.1, Red Hat OpenShift Dev Spaces 3.28, Red Hat AMQ Broker 7, Red Hat AMQ Clients, Red Hat build of OptaPlanner 8, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9 and 6 more&lt;/p&gt;
&lt;p&gt;Values produced by ${random.value} are not suitable for use as secrets. ${random.uuid} is not affected. ${random.int} and ${random.long} should never be used for secrets as they are numeric values with a predictable range.&lt;/p&gt;
&lt;p&gt;Affected: Spring Boot 4.0.0–4.0.5 (fix 4.0.6), 3.5.0–3.5.13 (fix 3.5.14), 3.4.0–3.4.15 (fix 3.4.16), 3.3.0–3.3.18 (fix 3.3.19), 2.7.0–2.7.32 (fix 2.7.33); random value property source / weak PRNG for secrets. Versions that are no longer supported are also affected per vendor advisory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Spring Boot, Red Hat HawtIO HawtIO 4.4.0, Red Hat build of Apache Camel 4.18.1 for Spring Boot 3.5.14, Red Hat Data Grid 8.6.1, Red Hat OpenShift Dev Spaces 3.28, Red Hat AMQ Broker 7, Red Hat AMQ Clients, Red Hat build of OptaPlanner 8, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9 and 6 more&lt;/p&gt;
&lt;p&gt;Values produced by ${random.value} are not suitable for use as secrets. ${random.uuid} is not affected. ${random.int} and ${random.long} should never be used for secrets as they are numeric values with a predictable range.&lt;/p&gt;
&lt;p&gt;Affected: Spring Boot 4.0.0–4.0.5 (fix 4.0.6), 3.5.0–3.5.13 (fix 3.5.14), 3.4.0–3.4.15 (fix 3.4.16), 3.3.0–3.3.18 (fix 3.3.19), 2.7.0–2.7.32 (fix 2.7.33); random value property source / weak PRNG for secrets. Versions that are no longer supported are also affected per vendor advisory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-40975</guid>
    </item>
  </channel>
</rss>
