Search CVE reports


Toggle filters

571 – 580 of 45341 results

Status is adjusted based on your filters.


CVE-2026-26447

Medium priority
Needs evaluation

Stomper 5e2741e is vulnerable to Use-After-Free. When a single client repeatedly issues SUBSCRIBE commands for the same destination over one connection and then closes that connection, the broker performs incorrect cleanup of its...

1 affected package

stomper

Package 24.04 LTS
stomper Needs evaluation
Show less packages

CVE-2026-26446

Medium priority
Needs evaluation

Stomper 5e2741e is vulnerable to Denial of Service. When a broker sends data to a client whose TCP connection was already closed by the peer, the server process receives SIGPIPE and immediately terminates, resulting in a denial of...

1 affected package

stomper

Package 24.04 LTS
stomper Needs evaluation
Show less packages

CVE-2026-26445

Medium priority
Needs evaluation

stomper 5e2741e is vulnerable to Denial of Service. A malicious client can send partial STOMP frames and keep the TCP connections open, which, combined with the broker s use of edge-triggered epoll (EPOLLET) and MSG_PEEK in...

1 affected package

stomper

Package 24.04 LTS
stomper Needs evaluation
Show less packages

CVE-2025-70293

Medium priority
Needs evaluation

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability exists in function ext4fs_get_bgdtable, the size calculation can lead to under allocation and this underallocated buffer will be used...

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS
u-boot Needs evaluation
u-boot-nezha Needs evaluation
Show less packages

CVE-2025-70290

Medium priority
Needs evaluation

An issue was discovered in Denx U-Boot before 2026.04. An integer overflow vulnerability in the ZFS filesystem support can be triggered by malformed on-disk metadata. The issue may result in incorrect memory allocation followed by...

2 affected packages

u-boot, u-boot-nezha

Package 24.04 LTS
u-boot Needs evaluation
u-boot-nezha Needs evaluation
Show less packages

CVE-2026-75466

Medium priority
Needs evaluation

libjpeg-turbo 3.2.0 contains an integer division-by-zero vulnerability in the PNG loader. When processing a valid indexed-color PNG image with a non-gray palette through tj3LoadImage12() or tj3LoadImage16() using the default pixel...

3 affected packages

libjpeg-turbo, libjpeg6b, libjpeg9

Package 24.04 LTS
libjpeg-turbo Needs evaluation
libjpeg6b Needs evaluation
libjpeg9 Needs evaluation
Show less packages

CVE-2025-56798

Medium priority
Needs evaluation

Cross-Site Request Forgery (CSRF) vulnerability in Lime Technology, Inc.'s Unraid OS version 6.12.14 and earlier allows remote attackers to escalate privileges via the Unraid authentication cookie's lax same-site policy.

1 affected package

lime

Package 24.04 LTS
lime Needs evaluation
Show less packages

CVE-2023-42179

Medium priority
Needs evaluation

Bird Home Automation GmbH D1101V-F 000140 is vulnerable to Incorrect Access Control via the Key derivation process, password validation process.

1 affected package

bird

Package 24.04 LTS
bird Needs evaluation
Show less packages

CVE-2026-48549

Medium priority
Needs evaluation

Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 contains a CSRF vulnerability in cmd.cgi. When no Cookie header is present, the double-submit cookie protection can be bypassed by supplying matching NagFormId and nagFormId...

1 affected package

nagios4

Package 24.04 LTS
nagios4 Needs evaluation
Show less packages

CVE-2026-48548

Medium priority
Needs evaluation

Nagios Core before 4.5.12 contains a cross-site request forgery vulnerability in cmd.cgi where the CSRF protection mechanism passes validation when the NagFormId cookie is absent. Attackers can craft a malicious cross-site POST...

1 affected package

nagios4

Package 24.04 LTS
nagios4 Needs evaluation
Show less packages