Search CVE reports


Toggle filters

91 – 100 of 49226 results

Status is adjusted based on your filters.


CVE-2026-93311

Medium priority
Needs evaluation

A vulnerability was detected in Freedesktop Poppler 26.07.0. This issue affects the function SampledFunction::SampledFunction of the file poppler/Function.cc of the component SampledFunction. The manipulation of the argument...

1 affected package

poppler

Package 20.04 LTS
poppler Needs evaluation
Show less packages

CVE-2026-93019

Medium priority
Needs evaluation

Imager versions before 1.036 for Perl exit the process reading a TGA with a colour map length of 32768 or more in tga_palette_read. The reader unpacks the two-byte colour map length into a signed short, so a length of 32768 or...

1 affected package

libimager-perl

Package 20.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-93018

Medium priority
Needs evaluation

Imager versions before 1.036 for Perl disclose uninitialised heap memory reading a paletted image with pixel indexes past its colour map in i_gpix_p and i_glin_p. The palette is allocated uninitialised, and only the entries a...

1 affected package

libimager-perl

Package 20.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-92382

Medium priority
Needs evaluation

[usbredir: usbredir: unbounded iso_packet_desc[] index in usbredirhost_iso_packet() leads to heap out-of-bounds write]

1 affected package

usbredir

Package 20.04 LTS
usbredir Needs evaluation
Show less packages

CVE-2026-91149

Medium priority
Needs evaluation

A flaw was found in Cockpit. An unauthenticated remote attacker can exploit this vulnerability by initiating and sustaining numerous simultaneous connections to the `cockpit-tls` service. This forces the service to create an...

1 affected package

cockpit

Package 20.04 LTS
cockpit Needs evaluation
Show less packages

CVE-2026-91147

Medium priority
Needs evaluation

A flaw was found in `cockpit-ws`. This vulnerability allows a remote, unauthenticated attacker to cause a Denial of Service (DoS) by sending a specially crafted request. When the `WebService.UrlRoot` is configured and a request is...

1 affected package

cockpit

Package 20.04 LTS
cockpit Needs evaluation
Show less packages

CVE-2026-91142

Medium priority
Needs evaluation

A flaw was found in Cockpit. An integer overflow vulnerability in the `do_lastlog()` function, specifically in the offset calculation for `lastlog` entries on ILP32 (Integer, Long, Pointer 32-bit) builds, can be exploited. A...

1 affected package

cockpit

Package 20.04 LTS
cockpit Needs evaluation
Show less packages

CVE-2026-89059

Medium priority
Needs evaluation

A flaw was found in RESTEasy's IIOImageProvider, which decodes attacker-supplied image request bodies without enforcing any limit on the declared image dimensions or pixel count. A remote, unauthenticated attacker can send a small...

2 affected packages

resteasy, resteasy3.0

Package 20.04 LTS
resteasy Needs evaluation
resteasy3.0 Needs evaluation
Show less packages

CVE-2026-89058

Medium priority
Needs evaluation

A flaw was found in RESTEasy's CorsFilter, which, when configured to allow all origins ("*"), reflects the request's Origin header back in the Access-Control-Allow-Origin response together with Access-Control-Allow-Credentials:...

2 affected packages

resteasy, resteasy3.0

Package 20.04 LTS
resteasy Needs evaluation
resteasy3.0 Needs evaluation
Show less packages

CVE-2026-86000

Medium priority
Needs evaluation

Soup Sieve is a CSS selector library designed to be used with Beautiful Soup 4. Prior to 2.9, the selector parser in src/soupsieve/css_parser.py defines IDENTIFIER with adjacent quantified groups over overlapping character...

1 affected package

soupsieve

Package 20.04 LTS
soupsieve Needs evaluation
Show less packages