Search CVE reports


Toggle filters

461 – 470 of 37959 results

Status is adjusted based on your filters.


CVE-2026-3644

Medium priority
Needs evaluation

The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation....

12 affected packages

python2.7, python3.4, python3.5, python3.6, python3.7...

Package 20.04 LTS
python2.7 Needs evaluation
python3.4
python3.5
python3.6
python3.7
python3.8 Needs evaluation
python3.9 Needs evaluation
python3.10
python3.11
python3.12
python3.13
python3.14
Show all 12 packages Show less packages

CVE-2026-30405

Medium priority
Needs evaluation

An issue in GoBGP gobgpd v.4.2.0 allows a remote attacker to cause a denial of service via the NEXT_HOP path attribute

1 affected package

gobgp

Package 20.04 LTS
gobgp Needs evaluation
Show less packages

CVE-2026-4185

Medium priority
Needs evaluation

A vulnerability was found in GPAC up to 2.5-DEV-rev2167-gcc9d617c0-master. This vulnerability affects the function swf_def_bits_jpeg of the file src/scene_manager/swf_parse.c of the component MP4Box. The manipulation of the...

1 affected package

gpac

Package 20.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-4174

Medium priority
Needs evaluation

A vulnerability has been found in Radare2 5.9.9. This issue affects the function walk_exports_trie of the file libr/bin/format/mach0/mach0.c of the component Mach-O File Parser. Such manipulation leads to resource consumption. The...

1 affected package

radare2

Package 20.04 LTS
radare2 Needs evaluation
Show less packages

CVE-2026-3442

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This vulnerability, a heap-based buffer overflow, specifically an out-of-bounds read, exists in the bfd linker component. An attacker could exploit this by convincing a user to process a specially...

1 affected package

binutils

Package 20.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-3441

Medium priority
Needs evaluation

A flaw was found in GNU Binutils. This heap-based buffer overflow vulnerability, specifically an out-of-bounds read in the bfd linker, allows an attacker to gain access to sensitive information. By convincing a user to process a...

1 affected package

binutils

Package 20.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-32778

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference in the function setContext on retry after an earlier ouf-of-memory condition.

23 affected packages

expat, coin3, apache2, apr-util, cmake...

Package 20.04 LTS
expat Needs evaluation
coin3 Not affected
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm
cableswig
matanza Ignored
tdom Needs evaluation
vtk
smart
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32777

Medium priority
Needs evaluation

libexpat before 2.7.5 allows an infinite loop while parsing DTD content.

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 20.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm
cableswig
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk
smart
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32776

Medium priority
Needs evaluation

libexpat before 2.7.5 allows a NULL pointer dereference with empty external parameter entity content.

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 20.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm
cableswig
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk
smart
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-32775

Medium priority
Needs evaluation

libexif through 0.6.25 has a flaw in decoding MakerNotes. If the exif_mnote_data_get_value function gets passed in a 0 size, the passed in-buffer would be overwritten due to an integer underflow.

1 affected package

libexif

Package 20.04 LTS
libexif Needs evaluation
Show less packages