Search CVE reports


Toggle filters

2201 – 2210 of 45973 results

Status is adjusted based on your filters.


CVE-2026-61308

Medium priority
Needs evaluation

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Networking). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20,...

11 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 24.04 LTS
openjdk-8 Needs evaluation
openjdk-9 Not in release
openjdk-lts Needs evaluation
openjdk-13 Not in release
openjdk-16 Not in release
openjdk-17 Needs evaluation
openjdk-17-crac Not in release
openjdk-18 Not in release
openjdk-21 Needs evaluation
openjdk-21-crac Not in release
openjdk-25 Needs evaluation
Show all 11 packages Show less packages

CVE-2026-60589

Medium priority
Needs evaluation

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20,...

11 affected packages

openjdk-8, openjdk-9, openjdk-lts, openjdk-13, openjdk-16...

Package 24.04 LTS
openjdk-8 Needs evaluation
openjdk-9 Not in release
openjdk-lts Needs evaluation
openjdk-13 Not in release
openjdk-16 Not in release
openjdk-17 Needs evaluation
openjdk-17-crac Not in release
openjdk-18 Not in release
openjdk-21 Needs evaluation
openjdk-21-crac Not in release
openjdk-25 Needs evaluation
Show all 11 packages Show less packages

CVE-2026-17106

Medium priority
Needs evaluation

The tar extraction routines in moby/go-archive (Unpack, UnpackLayer, Untar/UntarUncompressed, and the ApplyLayer helpers) do not confine filesystem operations to the destination directory. The extractor decides where each archive...

2 affected packages

docker.io, docker.io-app

Package 24.04 LTS
docker.io Needs evaluation
docker.io-app Needs evaluation
Show less packages

CVE-2026-75625

Medium priority
Needs evaluation

Kraken agents fail to verify peer-to-peer downloaded blobs against their requested SHA-256 digest before committing to the content-addressable cache, relying only on CRC32 checksums for piece validation. Attackers on the...

1 affected package

kraken

Package 24.04 LTS
kraken Needs evaluation
Show less packages

CVE-2026-73502

Medium priority
Needs evaluation

kin-openapi is a Go project for handling OpenAPI files. From 0.2.0 until 0.144.0, openapi3filter.ValidateRequest can encounter a NULL-pointer-dereference denial of service when an operation declares a content parameter whose...

1 affected package

golang-github-getkin-kin-openapi

Package 24.04 LTS
golang-github-getkin-kin-openapi Needs evaluation
Show less packages

CVE-2026-53533

Medium priority

Not in release

aiosmtplib is an asynchronous SMTP client for use with asyncio. Prior to 5.1.1, SMTP.mail(), SMTP.rcpt(), SMTP.vrfy(), and SMTP.expn() send caller-supplied addresses without rejecting embedded CR or LF bytes. Data after the line...

1 affected package

aiosmtplib

Package 24.04 LTS
aiosmtplib Not in release
Show less packages

CVE-2026-49452

Medium priority
Needs evaluation

WeasyPrint helps web developers to create PDF documents. Prior to 69.0, WeasyPrint embeds unescaped HTML presentational-hint attribute values into CSS in weasyprint/css/__init__.py when presentational_hints=True. The background...

1 affected package

weasyprint

Package 24.04 LTS
weasyprint Needs evaluation
Show less packages

CVE-2026-69220

Medium priority
Needs evaluation

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.1, src/main/java/com/rabbitmq/client/impl/ValueReader.java permits ValueReader.readTable and...

1 affected package

rabbitmq-java-client

Package 24.04 LTS
rabbitmq-java-client Needs evaluation
Show less packages

CVE-2026-69219

Medium priority
Needs evaluation

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.1, src/main/java/com/rabbitmq/client/impl/ValueReader.java uses ValueReader.readBytes to accept...

1 affected package

rabbitmq-java-client

Package 24.04 LTS
rabbitmq-java-client Needs evaluation
Show less packages

CVE-2026-63337

Medium priority
Needs evaluation

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. Prior to 5.33.0, com.rabbitmq.tools.jsonrpc.ProcedureDescription receives a javaReturnType value in an...

1 affected package

rabbitmq-java-client

Package 24.04 LTS
rabbitmq-java-client Needs evaluation
Show less packages