Search CVE reports


Toggle filters

41 – 50 of 37394 results

Status is adjusted based on your filters.


CVE-2026-34445

Medium priority
Needs evaluation

(Open Neural Network Exchange (ONNX) is an open standard for machine le ...)

1 affected package

onnx

Package 22.04 LTS
onnx Needs evaluation
Show less packages

CVE-2026-34441

Medium priority
Needs evaluation

cpp-httplib is a C++11 single-file header-only cross platform HTTP/HTTPS library. Prior to version 0.40.0, cpp-httplib is vulnerable to HTTP Request Smuggling. The server's static file handler serves GET responses...

1 affected package

cpp-httplib

Package 22.04 LTS
cpp-httplib Needs evaluation
Show less packages

CVE-2026-34235

Medium priority

Not in release

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, a heap out-of-bounds read vulnerability exists in PJSIP's VP9 RTP unpacketizer that occurs when parsing crafted VP9 Scalability...

1 affected package

pjproject

Package 22.04 LTS
pjproject Not in release
Show less packages

CVE-2026-34165

Medium priority
Needs evaluation

go-git is an extensible git implementation library written in pure Go. From version 5.0.0 to before version 5.17.1, a vulnerability has been identified in which a maliciously crafted .idx file can cause asymmetric...

1 affected package

golang-github-go-git-go-git

Package 22.04 LTS
golang-github-go-git-go-git Needs evaluation
Show less packages

CVE-2026-34155

Medium priority
Needs evaluation

RAUC controls the update process on embedded Linux systems. Prior to version 1.15.2, RAUC bundles using the 'plain' format exceeding a payload size of 2 GiB cause an integer overflow which results in a signature which covers only...

1 affected package

rauc

Package 22.04 LTS
rauc Needs evaluation
Show less packages

CVE-2026-33990

Medium priority
Needs evaluation

(Docker Model Runner (DMR) is software used to manage, run, and deploy ...)

2 affected packages

docker.io, docker.io-app

Package 22.04 LTS
docker.io Needs evaluation
docker.io-app Needs evaluation
Show less packages

CVE-2026-33762

Medium priority
Needs evaluation

go-git is an extensible git implementation library written in pure Go. Prior to version 5.17.1, go-git’s index decoder for format version 4 fails to validate the path name prefix length before applying it to the previously decoded...

1 affected package

golang-github-go-git-go-git

Package 22.04 LTS
golang-github-go-git-go-git Needs evaluation
Show less packages

CVE-2026-33276

Medium priority

Not in release

Stored cross-site scripting (XSS) in Checkmk 2.5.0 (beta) before 2.5.0b2 allows authenticated users with permission to create hosts or services to execute arbitrary JavaScript in the browsers of other users performing searches in...

1 affected package

check-mk

Package 22.04 LTS
check-mk Not in release
Show less packages

CVE-2026-3308

Medium priority
Needs evaluation

An integer overflow vulnerability in 'pdf-image.c' in Artifex's MuPDF version 1.27.0 allows an attacker to maliciously craft a PDF that can trigger an integer overflow within the 'pdf_load_image_imp' function. This allows a heap...

1 affected package

mupdf

Package 22.04 LTS
mupdf Needs evaluation
Show less packages

CVE-2026-32726

Medium priority
Needs evaluation

SciTokens C++ is a minimal library for creating and using SciTokens from C or C++. Prior to version 1.4.1, scitokens-cpp is vulnerable to an authorization bypass in path-based scope validation. The enforcer used a simple...

1 affected package

scitokens-cpp

Package 22.04 LTS
scitokens-cpp Needs evaluation
Show less packages