Search CVE reports


Toggle filters

1701 – 1710 of 26524 results

Status is adjusted based on your filters.


CVE-2026-40493

Medium priority
Needs evaluation

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit c930284445ea3ff94451ccd7a57c999eca3bc979, the PSD codec computes bytes-per-pixel (`bpp`) from...

1 affected package

sail

Package 26.04 LTS
sail Needs evaluation
Show less packages

CVE-2026-40492

Medium priority
Needs evaluation

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to commit 36aa5c7ec8a2bb35f6fb867a1177a6f141156b02, the XWD codec resolves pixel format based on...

1 affected package

sail

Package 26.04 LTS
sail Needs evaluation
Show less packages

CVE-2026-40491

Medium priority
Needs evaluation

gdown is a Google Drive public file/folder downloader. Versions prior to 5.2.2 are vulnerable to a Path Traversal attack within the extractall functionality. When extracting a maliciously crafted ZIP or TAR archive, the library...

1 affected package

gdown

Package 26.04 LTS
gdown Needs evaluation
Show less packages

CVE-2026-40490

Medium priority
Needs evaluation

The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. When redirect following is enabled (followRedirect(true)), versions of AsyncHttpClient prior to...

1 affected package

async-http-client

Package 26.04 LTS
async-http-client Needs evaluation
Show less packages

CVE-2026-40347

Medium priority
Needs evaluation

Python-Multipart is a streaming multipart parser for Python. Versions prior to 0.0.26 have a denial of service vulnerability when parsing crafted `multipart/form-data` requests with large preamble or epilogue sections. Upgrade to...

1 affected package

python-multipart

Package 26.04 LTS
python-multipart Needs evaluation
Show less packages

CVE-2026-40341

Medium priority
Needs evaluation

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, an out of bound read in ptp_unpack_EOS_FocusInfoEx could be used to crash libgphoto2 when processing input from untrusted USB devices....

1 affected package

libgphoto2

Package 26.04 LTS
libgphoto2 Needs evaluation
Show less packages

CVE-2026-40338

Medium priority
Needs evaluation

libgphoto2 is a camera access and control library. Versions up to and including 2.5.33 have an out-of-bounds read in the PTP_DPFF_Enumeration case of `ptp_unpack_Sony_DPD()` in `camlibs/ptp2/ptp-pack.c` (line 856). The function...

1 affected package

libgphoto2

Package 26.04 LTS
libgphoto2 Needs evaluation
Show less packages

CVE-2026-40336

Medium priority
Needs evaluation

libgphoto2 is a camera access and control library. Versions up to and including 2.5.33 have a memory leak in `ptp_unpack_Sony_DPD()` in `camlibs/ptp2/ptp-pack.c` (lines 884–885). When processing a secondary enumeration list...

1 affected package

libgphoto2

Package 26.04 LTS
libgphoto2 Needs evaluation
Show less packages

CVE-2026-40335

Medium priority
Needs evaluation

libgphoto2 is a camera access and control library. Versions up to and including 2.5.33 have an out-of-bounds read in `ptp_unpack_DPV()` in `camlibs/ptp2/ptp-pack.c` (lines 622–629). The UINT128 and INT128 cases advance `*offset +=...

1 affected package

libgphoto2

Package 26.04 LTS
libgphoto2 Needs evaluation
Show less packages

CVE-2026-40333

Medium priority
Needs evaluation

libgphoto2 is a camera access and control library. In versions up to and including 2.5.33, two functions in camlibs/ptp2/ptp-pack.c accept a data pointer but no length parameter, performing unbounded reads. Their callers in...

1 affected package

libgphoto2

Package 26.04 LTS
libgphoto2 Needs evaluation
Show less packages