Search CVE reports


Toggle filters

1521 – 1530 of 39983 results

Status is adjusted based on your filters.


CVE-2026-3505

Medium priority
Needs evaluation

Allocation of resources without limits or throttling, Uncontrolled Resource Consumption vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcpg on all (pg modules). This vulnerability is associated with program...

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-0636

Medium priority
Needs evaluation

Improper neutralization of special elements used in an LDAP query ('LDAP injection') vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (prov modules). This vulnerability is associated with program files...

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2025-14813

Medium priority
Needs evaluation

Use of a Broken or Risky Cryptographic Algorithm vulnerability in Legion of the Bouncy Castle Inc. BC-JAVA bcprov on all (core modules). This vulnerability is associated with program files G3413CTRBlockCipher. GOSTCTR...

1 affected package

bouncycastle

Package 20.04 LTS
bouncycastle Needs evaluation
Show less packages

CVE-2026-5160

Medium priority
Needs evaluation

Versions of the package github.com/yuin/goldmark/renderer/html before 1.7.17 are vulnerable to Cross-site Scripting (XSS) due to improper ordering of URL validation and normalization. The renderer validates link destinations using...

1 affected package

golang-github-yuin-goldmark

Package 20.04 LTS
golang-github-yuin-goldmark Needs evaluation
Show less packages

CVE-2026-40719

Medium priority
Needs evaluation

Deadwood in MaraDNS 3.5.0036 allows attackers to exhaust connection slots via a zone whose authoritative nameserver address cannot be resolved.

1 affected package

maradns

Package 20.04 LTS
maradns Needs evaluation
Show less packages

CVE-2026-40499

Medium priority
Needs evaluation

radare2 prior to version 6.1.4 contains a command injection vulnerability in the PDB parser's print_gvars() function that allows attackers to execute arbitrary commands by embedding a newline byte in the PE section header name...

1 affected package

radare2

Package 20.04 LTS
radare2 Needs evaluation
Show less packages

CVE-2026-33023

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. In versions 1.8.7 and prior, when built with the --with-gdk-pixbuf2 option, a use-after-free vulnerability exists in load_with_gdkpixbuf() in loader.c....

1 affected package

libsixel

Package 20.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33021

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain a use-after-free vulnerability in sixel_encoder_encode_bytes() because sixel_frame_init() stores the caller-owned...

1 affected package

libsixel

Package 20.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33020

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow which leads to a heap buffer overflow via sixel_frame_convert_to_rgb888() in frame.c, where...

1 affected package

libsixel

Package 20.04 LTS
libsixel Needs evaluation
Show less packages

CVE-2026-33019

Medium priority
Needs evaluation

libsixel is a SIXEL encoder/decoder implementation derived from kmiya's sixel. Versions 1.8.7 and prior contain an integer overflow leading to an out-of-bounds heap read in the --crop option handling of img2sixel, where positive...

1 affected package

libsixel

Package 20.04 LTS
libsixel Needs evaluation
Show less packages