PatchSiren

Radware CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Radware CVE published 2026-04-14

CVE-2026-5754

A Reflected Cross-Site Scripting (XSS) Vulnerability was discovered in Radware Alteon 34.5.4.0 vADC load-balancer. This vulnerability allows an attacker to inject malicious scripts into the website, potentially leading to unauthorized actions, data theft, or other malicious activities. The CVE record was published on 2026-04-14T18:17:39.487Z and has not been modified since then. The vulnerability has a CV [truncated]

MEDIUM Radware CVE published 2017-02-08

CVE-2016-10212

CVE-2016-10212 is a cryptographic weakness in Radware devices where the first two GCM nonces share the same value. NVD says this can let a remote attacker obtain the authentication key and spoof data via a "forbidden attack," with a possible connection to a third-party Cavium product. The issue was published by NVD on 2017-02-08 and later modified on 2026-05-13; those dates describe record lifecycle, not [truncated]