Search CVE reports


Toggle filters

1061 – 1070 of 46705 results

Status is adjusted based on your filters.


CVE-2026-53939

Medium priority
Needs evaluation

OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). In versions 0.6.1 through 0.6.2.5, when cjose encrypts a JWE using an AES-CBC-HMAC content-encryption algorithm...

1 affected package

cjose

Package 24.04 LTS
cjose Needs evaluation
Show less packages

CVE-2026-53938

Medium priority
Needs evaluation

OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). Prior to version 0.6.2.5, cjose's JWE decryption path for the AES Key Wrap key-management algorithms (`alg` = `A128KW`,...

1 affected package

cjose

Package 24.04 LTS
cjose Needs evaluation
Show less packages

CVE-2026-19201

Medium priority

Not in release

An uncontrolled recursion vulnerability in the Windows SIPA event log parser of Google go-attestation versions up to and including 0.6.1 allows an attacker to cause a denial of service (DoS). The (*WinEvents).readELAMAggregation...

1 affected package

golang-github-google-go-attestation

Package 24.04 LTS
golang-github-google-go-attestation Not in release
Show less packages

CVE-2026-85013

Medium priority
Needs evaluation

[Unknown description]

1 affected package

modules

Package 24.04 LTS
modules Needs evaluation
Show less packages

CVE-2026-86564

Medium priority
Vulnerable

A flaw was found in DPDK lib/vhost. Missing length validation before reading command_data in the virtio-net control-queue handler can cause an out-of-bounds read and a host process crash.

1 affected package

dpdk

Package 24.04 LTS
dpdk Vulnerable
Show less packages

CVE-2026-18090

Medium priority
Needs evaluation

A flaw was found in gdk-pixbuf. This vulnerability allows a remote attacker to cause a heap out-of-bounds read by providing a specially crafted Apple Icon Image (.icns) file. The uncompress() function, which handles RLE-encoded...

1 affected package

gdk-pixbuf

Package 24.04 LTS
gdk-pixbuf Needs evaluation
Show less packages

CVE-2026-30754

Medium priority
Needs evaluation

A memory corruption vulnerability exists in FFmpeg before 8.1. The RTP encoding process. In the nal_send function in libavformat/rtpenc_h264_hevc.c, a negative size parameter (size=-3) is passed to memcpy when transmitting...

2 affected packages

ffmpeg, libav

Package 24.04 LTS
ffmpeg Needs evaluation
libav Not in release
Show less packages

CVE-2026-85630

Medium priority
Needs evaluation

HTML::FormHandler versions before 0.410002 for Perl render field attributes into HTML without escaping using the process_attrs method. Any application with fields or field labels where some attributes are built from data rather...

1 affected package

libhtml-formhandler-perl

Package 24.04 LTS
libhtml-formhandler-perl Needs evaluation
Show less packages

CVE-2026-85485

Medium priority
Needs evaluation

HTML::FormHandler versions before 0.410002 for Perl render some error messages into HTML without escaping. The Table form layout and the Bootstrap 2 and 3 wrappers splice each error string straight into the surrounding markup....

1 affected package

libhtml-formhandler-perl

Package 24.04 LTS
libhtml-formhandler-perl Needs evaluation
Show less packages

CVE-2026-85484

Medium priority
Needs evaluation

HTML::FormHandler versions before 0.410002 for Perl render option group labels and radio button labels into HTML without escaping. The Select, RadioGroup, CheckboxGroup and HorizCheckboxGroup widgets render a group label...

1 affected package

libhtml-formhandler-perl

Package 24.04 LTS
libhtml-formhandler-perl Needs evaluation
Show less packages