Search CVE reports


Toggle filters

1661 – 1670 of 26524 results

Status is adjusted based on your filters.


CVE-2026-6747

Medium priority
Not affected

Use-after-free in the WebRTC component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 26.04 LTS
firefox Not affected
thunderbird Not affected
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Not in release
mozjs91 Not in release
mozjs102 Not in release
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-6746

Medium priority
Not affected

Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

9 affected packages

firefox, thunderbird, mozjs38, mozjs52, mozjs68...

Package 26.04 LTS
firefox Not affected
thunderbird Not affected
mozjs38 Not in release
mozjs52 Not in release
mozjs68 Not in release
mozjs78 Not in release
mozjs91 Not in release
mozjs102 Not in release
mozjs115 Not in release
Show all 9 packages Show less packages

CVE-2026-4367

Medium priority
Vulnerable

libXpm Out-of-bounds read in xpmNextWord()

2 affected packages

libxpm, motif

Package 26.04 LTS
libxpm Vulnerable
motif Needs evaluation
Show less packages

CVE-2026-40706

Medium priority
Fixed

In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image....

1 affected package

ntfs-3g

Package 26.04 LTS
ntfs-3g Fixed
Show less packages

CVE-2026-40244

Medium priority
Not affected

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In versions 3.4.0 through 3.4.9, 3.3.0 through 3.3.9, and 3.2.0 through...

1 affected package

openexr

Package 26.04 LTS
openexr Not affected
Show less packages

CVE-2026-39378

Medium priority
Needs evaluation

The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. In versions 6.5 through 7.17.0, when `HTMLExporter.embed_images=True`, nbconvert's markdown renderer allows arbitrary...

1 affected package

nbconvert

Package 26.04 LTS
nbconvert Needs evaluation
Show less packages

CVE-2026-35588

Medium priority
Needs evaluation

Glances is an open-source system cross-platform monitoring tool. Prior to version 4.5.4, the Cassandra export module (`glances/exports/glances_cassandra/__init__.py`) interpolates `keyspace`, `table`, and `replication_factor`...

1 affected package

glances

Package 26.04 LTS
glances Needs evaluation
Show less packages

CVE-2026-6654

Medium priority
Needs evaluation

(Double-Free / Use-After-Free (UAF) in the `IntoIter::drop` and `ThinVe ...)

1 affected package

rust-thin-vec

Package 26.04 LTS
rust-thin-vec Needs evaluation
Show less packages

CVE-2026-41445

Medium priority
Needs evaluation

(KissFFT before commit8a8e66e contains an integer overflow vulnerabilit ...)

1 affected package

kissfft

Package 26.04 LTS
kissfft Needs evaluation
Show less packages

CVE-2026-40372

Medium priority
Fixed

Improper verification of cryptographic signature in ASP.NET Core allows an unauthorized attacker to elevate privileges over a network.

5 affected packages

dotnet6, dotnet7, dotnet8, dotnet9, dotnet10

Package 26.04 LTS
dotnet6
dotnet7
dotnet8
dotnet9
dotnet10 Fixed
Show less packages