<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://exploit-radar.com/en/flux/categories/frameworks.xml</id>
  <title>Exploit Radar: Frameworks and libraries</title>
  <subtitle>The latest additions to CISA’s catalog of exploited vulnerabilities in the “Frameworks and libraries” category (indicative classification).</subtitle>
  <link rel="self" type="application/atom+xml" href="https://exploit-radar.com/en/flux/categories/frameworks.xml"/>
  <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/produits/frameworks/"/>
  <updated>2026-09-02T00:00:00Z</updated>
  <author><name>Exploit Radar</name></author>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-48710/</id>
    <title>CVE-2026-48710 — Starlette</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-48710/"/>
    <updated>2026-09-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Starlette; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on September 2, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-23758/</id>
    <title>CVE-2021-23758 — Ajax.NET Professional</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-23758/"/>
    <updated>2026-08-26T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ajax.NET Professional; if none are available, stop using the product. Start with internet-facing devices. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on August 26, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2026-45321/</id>
    <title>CVE-2026-45321 — TanStack</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2026-45321/"/>
    <updated>2026-05-27T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from TanStack; if none are available, stop using the product. For cloud services, follow the guidance from TanStack. CISA deadline: 14 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 27, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-54068/</id>
    <title>CVE-2025-54068 — Laravel Livewire</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-54068/"/>
    <updated>2026-03-20T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Laravel; if none are available, stop using the product. For cloud services, follow the guidance from Laravel. CISA deadline: 14 days. Added to CISA’s catalog of exploited vulnerabilities on March 20, 2026.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-55182/</id>
    <title>CVE-2025-55182 — React (Meta) React Server Components</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-55182/"/>
    <updated>2025-12-05T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from React (Meta); if none are available, stop using the product. For cloud services, follow the guidance from React (Meta). CISA deadline: 7 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on December 5, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-10033/</id>
    <title>CVE-2016-10033 — PHPMailer</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-10033/"/>
    <updated>2025-07-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from PHPMailer; if none are available, stop using the product. For cloud services, follow the guidance from PHPMailer. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 7, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-5418/</id>
    <title>CVE-2019-5418 — Ruby on Rails</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-5418/"/>
    <updated>2025-07-07T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Ruby on Rails; if none are available, stop using the product. For cloud services, follow the guidance from Ruby on Rails. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on July 7, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-32433/</id>
    <title>CVE-2025-32433 — Erlang/OTP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-32433/"/>
    <updated>2025-06-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Erlang; if none are available, stop using the product. For cloud services, follow the guidance from Erlang. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on June 9, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2025-27363/</id>
    <title>CVE-2025-27363 — FreeType</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2025-27363/"/>
    <updated>2025-05-06T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from FreeType; if none are available, stop using the product. For cloud services, follow the guidance from FreeType. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 6, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-58136/</id>
    <title>CVE-2024-58136 — Yii Framework Yii</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-58136/"/>
    <updated>2025-05-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Yii Framework; if none are available, stop using the product. For cloud services, follow the guidance from Yii Framework. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 2, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-29059/</id>
    <title>CVE-2024-29059 — Microsoft .NET / Visual Studio</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-29059/"/>
    <updated>2025-02-04T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on February 4, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-11023/</id>
    <title>CVE-2020-11023 — jQuery</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-11023/"/>
    <updated>2025-01-23T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from jQuery; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 23, 2025.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-21445/</id>
    <title>CVE-2022-21445 — Oracle ADF Faces</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-21445/"/>
    <updated>2024-09-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Oracle; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 18, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-3714/</id>
    <title>CVE-2016-3714 — ImageMagick</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-3714/"/>
    <updated>2024-09-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from ImageMagick; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 9, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2024-4577/</id>
    <title>CVE-2024-4577 — PHP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2024-4577/"/>
    <updated>2024-06-12T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from PHP; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on June 12, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-15133/</id>
    <title>CVE-2018-15133 — Laravel Framework</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-15133/"/>
    <updated>2024-01-16T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Laravel; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 16, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-7101/</id>
    <title>CVE-2023-7101 — Spreadsheet::ParseExcel</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-7101/"/>
    <updated>2024-01-02T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Spreadsheet::ParseExcel; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on January 2, 2024.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-29552/</id>
    <title>CVE-2023-29552 — Protocoles (IETF) Service Location Protocol (SLP)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-29552/"/>
    <updated>2023-11-08T00:00:00Z</updated>
    <summary type="text">Specific CISA instructions: see the vulnerability page. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on November 8, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-14667/</id>
    <title>CVE-2018-14667 — Red Hat JBoss RichFaces</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-14667/"/>
    <updated>2023-09-28T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Red Hat; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on September 28, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-3129/</id>
    <title>CVE-2021-3129 — Laravel Ignition</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-3129/"/>
    <updated>2023-09-18T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Laravel; if none are available, stop using the product. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on September 18, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2023-38180/</id>
    <title>CVE-2023-38180 — Microsoft .NET / Visual Studio</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2023-38180/"/>
    <updated>2023-08-09T00:00:00Z</updated>
    <summary type="text">Apply the patches or mitigations from Microsoft; if none are available, stop using the product. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 9, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-3427/</id>
    <title>CVE-2016-3427 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-3427/"/>
    <updated>2023-05-12T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 12, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-45046/</id>
    <title>CVE-2021-45046 — Apache Log4j</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-45046/"/>
    <updated>2023-05-01T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 1, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2021-39144/</id>
    <title>CVE-2021-39144 — XStream</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2021-39144/"/>
    <updated>2023-03-10T00:00:00Z</updated>
    <summary type="text">Apply the security update from XStream. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 10, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-36537/</id>
    <title>CVE-2022-36537 — ZK Framework AuUploader</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-36537/"/>
    <updated>2023-02-27T00:00:00Z</updated>
    <summary type="text">Apply the security update from ZK Framework. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on February 27, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-11357/</id>
    <title>CVE-2017-11357 — Progress Telerik UI for ASP.NET AJAX</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-11357/"/>
    <updated>2023-01-26T00:00:00Z</updated>
    <summary type="text">Apply the security update from Progress. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on January 26, 2023.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-22963/</id>
    <title>CVE-2022-22963 — Spring Cloud Function</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-22963/"/>
    <updated>2022-08-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Spring. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-28949/</id>
    <title>CVE-2020-28949 — PEAR Archive_Tar</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-28949/"/>
    <updated>2022-08-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from PEAR. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-36193/</id>
    <title>CVE-2020-36193 — PEAR Archive_Tar</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-36193/"/>
    <updated>2022-08-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from PEAR. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on August 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2010-0840/</id>
    <title>CVE-2010-0840 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2010-0840/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0422/</id>
    <title>CVE-2013-0422 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0422/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-0431/</id>
    <title>CVE-2013-0431 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-0431/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-2423/</id>
    <title>CVE-2013-2423 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-2423/"/>
    <updated>2022-05-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-8291/</id>
    <title>CVE-2017-8291 — Artifex Ghostscript</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-8291/"/>
    <updated>2022-05-24T00:00:00Z</updated>
    <summary type="text">Apply the security update from Artifex. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 24, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-22947/</id>
    <title>CVE-2022-22947 — Spring Cloud Gateway</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-22947/"/>
    <updated>2022-05-16T00:00:00Z</updated>
    <summary type="text">Apply the security update from Spring. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 16, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2014-0160/</id>
    <title>CVE-2014-0160 — OpenSSL</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2014-0160/"/>
    <updated>2022-05-04T00:00:00Z</updated>
    <summary type="text">Apply the security update from OpenSSL. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on May 4, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2017-11317/</id>
    <title>CVE-2017-11317 — Progress Telerik UI for ASP.NET AJAX</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2017-11317/"/>
    <updated>2022-04-11T00:00:00Z</updated>
    <summary type="text">Apply the security update from Progress. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on April 11, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2022-22965/</id>
    <title>CVE-2022-22965 — Spring Framework</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2022-22965/"/>
    <updated>2022-04-04T00:00:00Z</updated>
    <summary type="text">Apply the security update from Spring. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on April 4, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2012-5076/</id>
    <title>CVE-2012-5076 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2012-5076/"/>
    <updated>2022-03-28T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 28, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-2465/</id>
    <title>CVE-2013-2465 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-2465/"/>
    <updated>2022-03-28T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 28, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2012-1823/</id>
    <title>CVE-2012-1823 — PHP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2012-1823/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from PHP. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2013-2251/</id>
    <title>CVE-2013-2251 — Apache Struts</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2013-2251/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Apache. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2018-1273/</id>
    <title>CVE-2018-1273 — Spring Data</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2018-1273/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Spring. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2019-11043/</id>
    <title>CVE-2019-11043 — PHP</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2019-11043/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from PHP. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2014-0130/</id>
    <title>CVE-2014-0130 — Ruby on Rails</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2014-0130/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Ruby on Rails. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2016-0752/</id>
    <title>CVE-2016-0752 — Ruby on Rails</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2016-0752/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Ruby on Rails. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2020-5410/</id>
    <title>CVE-2020-5410 — Spring Cloud Config</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2020-5410/"/>
    <updated>2022-03-25T00:00:00Z</updated>
    <summary type="text">Apply the security update from Spring. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 25, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2009-3960/</id>
    <title>CVE-2009-3960 — Adobe BlazeDS</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2009-3960/"/>
    <updated>2022-03-07T00:00:00Z</updated>
    <summary type="text">Apply the security update from Adobe. CISA deadline: 184 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 7, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2011-3544/</id>
    <title>CVE-2011-3544 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2011-3544/"/>
    <updated>2022-03-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2022.</summary>
  </entry>
  <entry>
    <id>https://exploit-radar.com/en/cve/CVE-2012-0507/</id>
    <title>CVE-2012-0507 — Oracle Java SE (JRE / JDK)</title>
    <link rel="alternate" type="text/html" href="https://exploit-radar.com/en/cve/CVE-2012-0507/"/>
    <updated>2022-03-03T00:00:00Z</updated>
    <summary type="text">Apply the security update from Oracle. CISA deadline: 21 days. Used in ransomware campaigns. Added to CISA’s catalog of exploited vulnerabilities on March 3, 2022.</summary>
  </entry>
</feed>
