Search CVE reports


Toggle filters

201 – 210 of 52029 results

Status is adjusted based on your filters.


CVE-2026-54633

Medium priority
Needs evaluation

PoDoFo is a C++17 PDF manipulation library. From version 1.0.0 until 1.1.1, processing a crafted PDF with an Indexed color-space image can cause a heap out-of-bounds read in PdfColorSpaceFilterIndexed::FetchScanLine...

1 affected package

libpodofo

Package 22.04 LTS
libpodofo Needs evaluation
Show less packages

CVE-2026-54627

Medium priority

Not in release

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, psd_private_sail_pixel_format() in src/sail-codecs/psd/helpers.c resolves a one-channel...

1 affected package

sail

Package 22.04 LTS
sail Not in release
Show less packages

CVE-2026-54626

Medium priority

Not in release

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, the TGA_INDEXED_RLE path selected by image_type == 9 allocates an image buffer using the...

1 affected package

sail

Package 22.04 LTS
sail Not in release
Show less packages

CVE-2026-54552

Medium priority
Needs evaluation

(sh provides Python process launching. Prior to 2.2.4, the _uid option ...)

1 affected package

python-sh

Package 22.04 LTS
python-sh Needs evaluation
Show less packages

CVE-2026-54355

Medium priority
Needs evaluation

MapServer is a system for developing web-based GIS applications. From 6.0 until 8.6.4, MapServer's OpenLayers HTML output for SERVICE=WMS&REQUEST=GetMap&FORMAT=application/openlayers reflects an attacker-controlled...

1 affected package

mapserver

Package 22.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-54354

Medium priority
Needs evaluation

MapServer is a system for developing web-based GIS applications. Prior to 8.6.4, MapServer's PostGIS runtime filter translation in src/mappostgis.cpp and msPostGISLayerTranslateFilter() treats a filteritem as numeric...

1 affected package

mapserver

Package 22.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-53534

Medium priority
Needs evaluation

JabRef is a desktop application for managing BibTeX and BibLaTeX libraries. Prior to 6.0-alpha.6, when jabsrv or JabRef's built-in HTTP server is enabled, the GET /better-bibtex/cayw endpoint accepts an external command query...

1 affected package

jabref

Package 22.04 LTS
jabref Needs evaluation
Show less packages

CVE-2026-50291

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to versions 3.0.16.0 and 3.1.11.0, processing a crafted BMP file through oiiotool or...

1 affected package

openimageio

Package 22.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-50161

Medium priority
Needs evaluation

(libre is a generic library for real-time communications with asynchron ...)

1 affected package

libre

Package 22.04 LTS
libre Needs evaluation
Show less packages

CVE-2026-48820

Medium priority
Needs evaluation

(CakePHP is a rapid development framework for PHP. In versions 4.5.11 a ...)

1 affected package

cakephp

Package 22.04 LTS
cakephp Needs evaluation
Show less packages