<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CVE &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/cve/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Wed, 03 Dec 2025 14:20:00 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Cloudflare WAF proactively protects against React vulnerability</title>
		<link>https://noise.getoto.net/2025/12/03/cloudflare-waf-proactively-protects-against-react-vulnerability/</link>
		
		<dc:creator><![CDATA[Daniele Molteni]]></dc:creator>
		<pubDate>Wed, 03 Dec 2025 14:20:00 +0000</pubDate>
				<category><![CDATA[Cloudforce One]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[React]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[waf]]></category>
		<category><![CDATA[web application firewall]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c9c13737728b03ef12f953bed1aff92a</guid>

					<description><![CDATA[Cloudflare offers protection against a new high profile vulnerability for React Server Components: CVE-2025-55182. All WAF customers are automatically protected as long as the WAF is deployed.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Cloudflare protects against critical SharePoint vulnerability, CVE-2025-53770</title>
		<link>https://noise.getoto.net/2025/07/22/cloudflare-protects-against-critical-sharepoint-vulnerability-cve-2025-53770/</link>
		
		<dc:creator><![CDATA[Jin-Hee Lee]]></dc:creator>
		<pubDate>Tue, 22 Jul 2025 16:30:00 +0000</pubDate>
				<category><![CDATA[CVE]]></category>
		<category><![CDATA[waf]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=39d286425950262fb470eccfdc40859a</guid>

					<description><![CDATA[Microsoft disclosed two critical vulnerabilities, CVE-2025-53771 and CVE-2025-53770, that are exploited to attack SharePoint servers.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Resolving a request smuggling vulnerability in Pingora</title>
		<link>https://noise.getoto.net/2025/05/22/resolving-a-request-smuggling-vulnerability-in-pingora/</link>
		
		<dc:creator><![CDATA[Edward Wang]]></dc:creator>
		<pubDate>Thu, 22 May 2025 13:00:00 +0000</pubDate>
				<category><![CDATA[bug bounty]]></category>
		<category><![CDATA[CDN]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[Pingora]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=ecccd1e717579e10bf69659cc2f94d7f</guid>

					<description><![CDATA[Cloudflare patched a vulnerability (CVE-2025-4366) in the Pingora OSS framework, which exposed users of the framework and Cloudflare CDN’s free tier to potential request smuggling attacks.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Vulnerability transparency: strengthening security through responsible disclosure</title>
		<link>https://noise.getoto.net/2025/05/16/vulnerability-transparency-strengthening-security-through-responsible-disclosure/</link>
		
		<dc:creator><![CDATA[Sri Pulla]]></dc:creator>
		<pubDate>Fri, 16 May 2025 15:00:00 +0000</pubDate>
				<category><![CDATA[CISA]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[Policy & Legal]]></category>
		<category><![CDATA[reliability]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=524ddf0bf0c1287951f28a642a9a7420</guid>

					<description><![CDATA[In line with CISA’s Secure By Design pledge, Cloudflare shares its vulnerability disclosure process, CVE issuance criteria, and CNA duties.]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Disrupting FlyingYeti&#8217;s campaign targeting Ukraine</title>
		<link>https://noise.getoto.net/2024/05/30/disrupting-flyingyetis-campaign-targeting-ukraine/</link>
		
		<dc:creator><![CDATA[Cloudforce One]]></dc:creator>
		<pubDate>Thu, 30 May 2024 13:00:38 +0000</pubDate>
				<category><![CDATA[Cloud Email Security]]></category>
		<category><![CDATA[Cloudflare Workers]]></category>
		<category><![CDATA[Cloudforce One]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Github]]></category>
		<category><![CDATA[intrusion detection]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Remote Browser Isolation]]></category>
		<category><![CDATA[russia]]></category>
		<category><![CDATA[serverless]]></category>
		<category><![CDATA[Threat Data]]></category>
		<category><![CDATA[Threat Intelligence]]></category>
		<category><![CDATA[Threat Operations]]></category>
		<category><![CDATA[Ukraine]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=79c1ef7666398be5b92021110206519b</guid>

					<description><![CDATA[In April and May 2024, Cloudforce One employed proactive defense measures to successfully prevent Russia-aligned threat actor FlyingYeti from launching their latest phishing campaign targeting Ukraine]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>All Cloudflare Customers Protected from Atlassian Confluence CVE-2023-22515</title>
		<link>https://noise.getoto.net/2023/10/04/all-cloudflare-customers-protected-from-atlassian-confluence-cve-2023-22515/</link>
		
		<dc:creator><![CDATA[Himanshu Anand]]></dc:creator>
		<pubDate>Wed, 04 Oct 2023 16:03:04 +0000</pubDate>
				<category><![CDATA[Atlassian]]></category>
		<category><![CDATA[Confluence]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[waf]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=64f02f8f8940b7a3fda6bf7b9cc9ed2b</guid>

					<description><![CDATA[On 2023-10-04 at 13:00 UTC, Atlassian released details of the zero-day vulnerability described as “Privilege Escalation Vulnerability in Confluence Data Center and Server” (CVE-2023-22515), a zero-day vulnerability impacting Confluence Server and Data Center products]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2023/10/Zero-Day-protection-2.png" length="0" type="" />

			</item>
		<item>
		<title>SLP: a new DDoS amplification vector in the wild</title>
		<link>https://noise.getoto.net/2023/04/25/slp-a-new-ddos-amplification-vector-in-the-wild/</link>
		
		<dc:creator><![CDATA[Alex Forster]]></dc:creator>
		<pubDate>Tue, 25 Apr 2023 13:07:56 +0000</pubDate>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[ddos]]></category>
		<category><![CDATA[mitigation]]></category>
		<category><![CDATA[reliability]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d458ea0a3503fbb1de809433381fda59</guid>

					<description><![CDATA[Researchers have recently published the discovery of a new DDoS reflection/amplification attack vector leveraging the SLP protocol. Cloudflare expects the prevalence of SLP-based DDoS attacks to rise in the coming weeks]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2023/04/image13-1-3.png" length="0" type="" />

			</item>
		<item>
		<title>CVE-2022-47929: traffic control noqueue no problem?</title>
		<link>https://noise.getoto.net/2023/01/31/cve-2022-47929-traffic-control-noqueue-no-problem/</link>
		
		<dc:creator><![CDATA[Frederick Lawler]]></dc:creator>
		<pubDate>Tue, 31 Jan 2023 14:00:00 +0000</pubDate>
				<category><![CDATA[CVE]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=73db26ab128938912426ff8af6d5ef3c</guid>

					<description><![CDATA[In the Linux kernel before 6.1.6, a NULL pointer dereference bug in the traffic control subsystem allows an unprivileged user to trigger a denial of service (system crash) via a crafted traffic control configuration that is set up with "tc qdisc" and "tc class" commands.]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2023/01/image1-55.png" length="0" type="" />

			</item>
		<item>
		<title>Cloudflare customers are protected from the Atlassian Confluence CVE-2022-26134</title>
		<link>https://noise.getoto.net/2022/06/03/cloudflare-customers-are-protected-from-the-atlassian-confluence-cve-2022-26134/</link>
		
		<dc:creator><![CDATA[Reid Tatoris]]></dc:creator>
		<pubDate>Fri, 03 Jun 2022 05:30:00 +0000</pubDate>
				<category><![CDATA[CVE]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6ec7cbd059f2d72a07d7560c0946e4f6</guid>

					<description><![CDATA[On June 02, 2022 Atlassian released a security advisory for their Confluence Server and Data Center applications, highlighting a critical severity unauthenticated remote code execution vulnerability.]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2022/06/image1-53.png" length="0" type="" />

			</item>
		<item>
		<title>WAF mitigations for Spring4Shell</title>
		<link>https://noise.getoto.net/2022/03/31/waf-mitigations-for-spring4shell/</link>
		
		<dc:creator><![CDATA[Michael Tremante]]></dc:creator>
		<pubDate>Thu, 31 Mar 2022 15:13:13 +0000</pubDate>
				<category><![CDATA[CVE]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[waf]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2009796c78ae963e51b2d037e8a10446</guid>

					<description><![CDATA[Cloudflare Managed Ruleset updates for the recent vulnerabilities affecting the Java Spring framework and related software components]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2022/03/image1-112.png" length="0" type="" />

			</item>
		<item>
		<title>CVE-2022-1096: How Cloudflare Zero Trust provides protection from zero day browser vulnerabilities</title>
		<link>https://noise.getoto.net/2022/03/29/cve-2022-1096-how-cloudflare-zero-trust-provides-protection-from-zero-day-browser-vulnerabilities/</link>
		
		<dc:creator><![CDATA[Tim Obezuk]]></dc:creator>
		<pubDate>Tue, 29 Mar 2022 15:51:37 +0000</pubDate>
				<category><![CDATA[Browser Isolation]]></category>
		<category><![CDATA[CVE]]></category>
		<category><![CDATA[RBI]]></category>
		<category><![CDATA[Remote Browser Isolation]]></category>
		<category><![CDATA[Zero Day Threats]]></category>
		<category><![CDATA[Zero-Trust]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c389b7e3a8d3ee94a2917f2539e25445</guid>

					<description><![CDATA[CVE-2022-1096 is yet another zero day vulnerability affecting web browsers. Cloudflare zero trust mitigates the risk of zero day attacks in the browser and has been patched]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2022/03/cve-2022-1096-zero-trust-protection-from-zero-day-browser-vulnerabilities-header.png" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 25/290 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-09 02:19:37 by W3 Total Cache
-->