Search CVE reports


Toggle filters

851 – 860 of 42732 results

Status is adjusted based on your filters.


CVE-2026-29022

Medium priority
Needs evaluation

dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadata_obj() function of dr_wav.h that allows memory corruption via crafted WAV files....

5 affected packages

dosbox-x, faudio, octave-ltfat, qtads, roc-toolkit

Package 18.04 LTS
dosbox-x
faudio
octave-ltfat Needs evaluation
qtads Needs evaluation
roc-toolkit
Show less packages

CVE-2026-25674

Low priority
Needs evaluation

An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. Race condition in file-system storage and file-based cache backends in Django allows an attacker to cause file system objects to be created...

1 affected package

python-django

Package 18.04 LTS
python-django Needs evaluation
Show less packages

CVE-2026-25673

Medium priority
Not affected

An issue was discovered in 6.0 before 6.0.3, 5.2 before 5.2.12, and 4.2 before 4.2.29. `URLField.to_python()` in Django calls `urllib.parse.urlsplit()`, which performs NFKC normalization on Windows that is disproportionately slow...

1 affected package

python-django

Package 18.04 LTS
python-django Not affected
Show less packages

CVE-2026-3351

Medium priority
Needs evaluation

Improper authorization in the API endpoint GET /1.0/certificates in Canonical LXD 6.6 on Linux allows an authenticated, restricted user to enumerate all certificate fingerprints trusted by the lxd server.

1 affected package

lxd

Package 18.04 LTS
lxd Needs evaluation
Show less packages

CVE-2026-3196

Medium priority
Needs evaluation

two potential OOB memory accesses in virtio-snd

1 affected package

qemu

Package 18.04 LTS
qemu Needs evaluation
Show less packages

CVE-2026-3195

Medium priority
Needs evaluation

two potential OOB memory accesses in virtio-snd

1 affected package

qemu

Package 18.04 LTS
qemu Needs evaluation
Show less packages

CVE-2026-27631

Medium priority
Fixed

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an uncaught exception was found in Exiv2. The vulnerability is in the preview...

1 affected package

exiv2

Package 18.04 LTS
exiv2 Fixed
Show less packages

CVE-2026-27596

Medium priority
Fixed

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found in Exiv2. The vulnerability is in the preview...

1 affected package

exiv2

Package 18.04 LTS
exiv2 Fixed
Show less packages

CVE-2026-25884

Medium priority
Fixed

Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metadata. Prior to version 0.28.8, an out-of-bounds read was found. The vulnerability is in the CRW image parser....

1 affected package

exiv2

Package 18.04 LTS
exiv2 Fixed
Show less packages

CVE-2026-23865

Medium priority
Not affected

An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable...

1 affected package

freetype

Package 18.04 LTS
freetype Not affected
Show less packages