Search CVE reports


Toggle filters

561 – 570 of 45341 results

Status is adjusted based on your filters.


CVE-2026-63676

Medium priority
Needs evaluation

[Unknown description]

1 affected package

libyaml-perl

Package 24.04 LTS
libyaml-perl Needs evaluation
Show less packages

CVE-2026-19542

Medium priority
Needs evaluation

[Out-of-bounds stack array access in tdelete]

2 affected packages

glibc, eglibc

Package 24.04 LTS
glibc Needs evaluation
eglibc Not in release
Show less packages

CVE-2026-19499

Medium priority
Needs evaluation

Buffer overflow in strfmon right-justification padding

2 affected packages

glibc, eglibc

Package 24.04 LTS
glibc Needs evaluation
eglibc Not in release
Show less packages

CVE-2026-80158

Medium priority
Needs evaluation

A flaw was found in the ipa_getkeytab module of the community.general Ansible collection. The module's bind_pw parameter, used to supply the LDAP simple-bind password when retrieving a Kerberos keytab, is not declared with no_log,...

2 affected packages

ansible, ansible-core

Package 24.04 LTS
ansible Needs evaluation
ansible-core Needs evaluation
Show less packages

CVE-2026-75329

Medium priority
Needs evaluation

The Netty configuration distribution service (port 8283) of super-diamond-server <= 1.3.3 has no authentication mechanism. Attackers can directly obtain the full configuration of any project (including database passwords, API...

1 affected package

netty

Package 24.04 LTS
netty Needs evaluation
Show less packages

CVE-2026-79921

Medium priority
Needs evaluation

amqp091-go is a Go AMQP 0.9.1 client. Before version 1.13.0, a compromised or malicious AMQP broker can force the client to allocate resources for and process content body frames that exceed the negotiated frame_max limit. This...

1 affected package

golang-github-rabbitmq-amqp091-go

Package 24.04 LTS
golang-github-rabbitmq-amqp091-go Needs evaluation
Show less packages

CVE-2026-39275

Medium priority
Needs evaluation

Cross Site Scripting vulnerability in Cockpit CMS v.2.13.5 and before allows a remote attacker to execute arbitrary code via the item.php, field-select.js and tags.js components

1 affected package

cockpit

Package 24.04 LTS
cockpit Needs evaluation
Show less packages

CVE-2026-77652

Medium priority
Needs evaluation

A heap-based buffer overflow vulnerability exists in the Dia diagram editor WPG file format importer. In plug-ins/wpg/wpg-import.c, the WPG import renderer allocates a fixed palette with: ren->pPal = g_new0(WPGColorRGB,...

1 affected package

dia

Package 24.04 LTS
dia Needs evaluation
Show less packages

CVE-2026-26449

Medium priority
Needs evaluation

In Stomper 5e2741e when a client sends a SEND frame missing the destination header field, the server triggers a null pointer dereference (or access to invalid memory) while processing the frame, causing the process to crash.

1 affected package

stomper

Package 24.04 LTS
stomper Needs evaluation
Show less packages

CVE-2026-26448

Medium priority
Needs evaluation

Stomper 5e2741e is vulnerable to Use-After-Free. When a client sends multiple CONNECT frames on the same TCP connection, and subsequently another client (or a later connection) sends SEND frames to a destination previously...

1 affected package

stomper

Package 24.04 LTS
stomper Needs evaluation
Show less packages