Search CVE reports


Toggle filters

1451 – 1460 of 39943 results

Status is adjusted based on your filters.


CVE-2025-65104

Medium priority
Needs evaluation

Firebird is an open-source relational database management system. In versions FB3 of the client library placed incorrect data length values into XSQLDA fields when communicating with FB4 or higher servers, resulting in an...

2 affected packages

firebird3.0, firebird4.0

Package 20.04 LTS
firebird3.0 Needs evaluation
firebird4.0
Show less packages

CVE-2026-6491

Medium priority
Needs evaluation

A security vulnerability has been detected in libvips up to 8.18.2. The affected element is the function im_minpos_vec of the file libvips/deprecated/vips7compat.c of the component nip2 Handler. Such manipulation of the argument n...

1 affected package

vips

Package 20.04 LTS
vips Needs evaluation
Show less packages

CVE-2026-5588

Medium priority
Needs evaluation

(: Use of a Broken or Risky Cryptographic Algorithm vulnerability in Le ...)

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-41082

Medium priority
Fixed

In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.

1 affected package

opam

Package 20.04 LTS
opam Fixed
Show less packages

CVE-2026-41080

Medium priority
Needs evaluation

(libexpat before 2.7.6 uses insufficient entropy, and thus hash floodin ...)

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 20.04 LTS
expat Needs evaluation
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm
cableswig
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk
smart
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-40505

Medium priority
Needs evaluation

(MuPDF mutool does not sanitize PDF metadata fields before writing them ...)

1 affected package

mupdf

Package 20.04 LTS
mupdf Needs evaluation
Show less packages

CVE-2026-40260

Medium priority
Needs evaluation

pypdf is a free and open-source pure-python PDF library. In versions prior to 6.10.0, manipulated XMP metadata entity declarations can exhaust RAM. An attacker who exploits this vulnerability can craft a PDF which leads to large...

2 affected packages

pypdf, pypdf2

Package 20.04 LTS
pypdf
pypdf2 Needs evaluation
Show less packages

CVE-2026-40192

Medium priority
Not affected

Pillow is a Python imaging library. Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a FITS image, making them vulnerable to decompression bomb attacks. A specially crafted FITS...

2 affected packages

pillow, pillow-python2

Package 20.04 LTS
pillow Not affected
pillow-python2 Not affected
Show less packages

CVE-2026-40179

Medium priority
Needs evaluation

(Prometheus is an open-source monitoring system and time series databas ...)

1 affected package

prometheus

Package 20.04 LTS
prometheus Needs evaluation
Show less packages

CVE-2026-3505

Medium priority
Needs evaluation

(Allocation of resources without limits or throttling vulnerability in ...)

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages