Search CVE reports


Toggle filters

391 – 400 of 39027 results

Status is adjusted based on your filters.


CVE-2026-93372

Medium priority
Not affected

Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0.8010.52 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

1 affected package

chromium-browser

Package 26.04 LTS
chromium-browser Not affected
Show less packages

CVE-2026-86049

Medium priority
Needs evaluation

Jupyter Server is the backend for Jupyter web applications. Prior to version 2.21.0, the 5xx request logging path in jupyter_server/log.py copies the Referer header into a JSON header block without applying the token scrubbing...

1 affected package

jupyter-server

Package 26.04 LTS
jupyter-server Needs evaluation
Show less packages

CVE-2026-77281

Medium priority
Needs evaluation

Caddy is an extensible server platform that uses TLS by default. In version 2.11.3 and earlier, three configuration-dependent weaknesses affect the handler and placeholder layer. In...

1 affected package

caddy

Package 26.04 LTS
caddy Needs evaluation
Show less packages

CVE-2026-54604

Medium priority
Needs evaluation

OpenSlide is a C library for reading whole slide image files. Prior to 4.0.1, a behavior change in libtiff 4.7.1 causes the indirect TIFF tile path in src/openslide-decode-tiff.c and _openslide_tiff_read_tile() to request a...

1 affected package

openslide

Package 26.04 LTS
openslide Needs evaluation
Show less packages

CVE-2026-54355

Medium priority
Needs evaluation

MapServer is a system for developing web-based GIS applications. From 6.0 until 8.6.4, MapServer's OpenLayers HTML output for SERVICE=WMS&REQUEST=GetMap&FORMAT=application/openlayers reflects an attacker-controlled...

1 affected package

mapserver

Package 26.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-54354

Medium priority
Needs evaluation

MapServer is a system for developing web-based GIS applications. Prior to 8.6.4, MapServer's PostGIS runtime filter translation in src/mappostgis.cpp and msPostGISLayerTranslateFilter() treats a filteritem as numeric...

1 affected package

mapserver

Package 26.04 LTS
mapserver Needs evaluation
Show less packages

CVE-2026-48977

Medium priority
Needs evaluation

OpenSlide is a C library for reading whole slide image files. From 3.4.1 until 4.0.1, OpenSlide's parse_level0_xml() processing in src/openslide-vendor-ventana.c accepts nonpositive row or column tile counts from a crafted Ventana...

1 affected package

openslide

Package 26.04 LTS
openslide Needs evaluation
Show less packages

CVE-2026-93337

Medium priority
Needs evaluation

NetworkManager-l2tp contains an improper input validation vulnerability that allows local users with VPN connection creation permissions to inject arbitrary pppd directives by supplying mru or mtu property values containing...

1 affected package

network-manager-l2tp

Package 26.04 LTS
network-manager-l2tp Needs evaluation
Show less packages

CVE-2026-54692

Medium priority
Needs evaluation

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. Prior to 1.0.0, sail_codec_load_frame_v8_xbm() in src/sail-codecs/xbm/xbm.c allocates the decoded pixel buffer...

1 affected package

sail

Package 26.04 LTS
sail Needs evaluation
Show less packages

CVE-2026-54627

Medium priority
Needs evaluation

SAIL is a cross-platform library for loading and saving images with support for animation, metadata, and ICC profiles. In 0.9.10 and earlier, psd_private_sail_pixel_format() in src/sail-codecs/psd/helpers.c resolves a one-channel...

1 affected package

sail

Package 26.04 LTS
sail Needs evaluation
Show less packages