<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 18:36:36 +0000</lastBuildDate>
    <item>
      <title>CVE-2024-28982 — Hitachi Vantara Pentaho Business Analytics Server - Improper Restriction of XML External Entity Reference</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2024-28982</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Hitachi Vantara Pentaho Business Analytics Server, hitachi_vantara pentaho_business_analytics_server&lt;/p&gt;
&lt;p&gt;Hitachi Vantara Pentaho Business Analytics Server versions before 10.1.0.0 and 9.3.0.7, including 8.3.x do not correctly protect the ACL service endpoint of the Pentaho User Console against XML External Entity Reference.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Hitachi Vantara Pentaho Business Analytics Server, hitachi_vantara pentaho_business_analytics_server&lt;/p&gt;
&lt;p&gt;Hitachi Vantara Pentaho Business Analytics Server versions before 10.1.0.0 and 9.3.0.7, including 8.3.x do not correctly protect the ACL service endpoint of the Pentaho User Console against XML External Entity Reference.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2024-28982</guid>
    </item>
  </channel>
</rss>
