Search CVE reports
141 – 150 of 38218 results
(Rack is a modular Ruby web server interface. Prior to versions 2.2.23, ...)
1 affected package
ruby-rack
| Package | 20.04 LTS |
|---|---|
| ruby-rack | Needs evaluation |
(Rack is a modular Ruby web server interface. Prior to versions 2.2.23, ...)
1 affected package
ruby-rack
| Package | 20.04 LTS |
|---|---|
| ruby-rack | Needs evaluation |
(Rack is a modular Ruby web server interface. Prior to versions 2.2.23, ...)
1 affected package
ruby-rack
| Package | 20.04 LTS |
|---|---|
| ruby-rack | Needs evaluation |
(xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) ...)
1 affected package
node-xmldom
| Package | 20.04 LTS |
|---|---|
| node-xmldom | Needs evaluation |
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.7, an attacker providing a crafted .exr file...
1 affected package
openexr
| Package | 20.04 LTS |
|---|---|
| openexr | Needs evaluation |
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, a crafted B44 or B44A EXR file can cause...
1 affected package
openexr
| Package | 20.04 LTS |
|---|---|
| openexr | Needs evaluation |
OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. From version 3.4.0 to before version 3.4.8, sensitive information from heap memory...
1 affected package
openexr
| Package | 20.04 LTS |
|---|---|
| openexr | Needs evaluation |
Flask-HTTPAuth provides Basic, Digest and Token HTTP authentication for Flask routes. Prior to version 4.8.1, in a situation where the client makes a request to a token protected resource without passing a token, or passing an...
1 affected package
python-flask-httpauth
| Package | 20.04 LTS |
|---|---|
| python-flask-httpauth | Needs evaluation |
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, multiple Host headers were allowed in aiohttp. This issue has been patched in version 3.13.4.
1 affected package
python-aiohttp
| Package | 20.04 LTS |
|---|---|
| python-aiohttp | Needs evaluation |
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Prior to version 3.13.4, the C parser (the default for most installs) accepted null bytes and control characters in response headers. This issue has...
1 affected package
python-aiohttp
| Package | 20.04 LTS |
|---|---|
| python-aiohttp | Needs evaluation |