Search CVE reports


Toggle filters

751 – 760 of 50657 results

Status is adjusted based on your filters.


CVE-2026-45184

Medium priority
Ignored

Kdenlive before 26.04.1 allows dangerous proxy parameters when an attacker-controlled project file is used.

1 affected package

kdenlive

Package 16.04 LTS
kdenlive Ignored
Show less packages

CVE-2026-42258

Medium priority
Needs evaluation

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, symbol arguments to commands are vulnerable to a CRLF Injection / IMAP Command injection via...

7 affected packages

ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.2...

Package 16.04 LTS
ruby2.3 Needs evaluation
ruby2.5
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Ignored
Show all 7 packages Show less packages

CVE-2026-42257

Medium priority
Vulnerable

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, several Net::IMAP commands accept a raw string argument that is sent to the server without...

7 affected packages

ruby2.5, ruby2.3, ruby2.7, ruby3.0, ruby3.2...

Package 16.04 LTS
ruby2.5
ruby2.3 Vulnerable
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Ignored
Show all 7 packages Show less packages

CVE-2026-42256

Medium priority
Ignored

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. From versions 0.4.0 to before 0.4.24, 0.5.0 to before 0.5.14, and 0.6.0 to before 0.6.4, when authenticating a connection with SCRAM-SHA1...

7 affected packages

ruby2.3, ruby2.5, ruby2.7, ruby3.0, ruby3.2...

Package 16.04 LTS
ruby2.3 Not affected
ruby2.5
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Ignored
Show all 7 packages Show less packages

CVE-2026-42246

Medium priority
Vulnerable

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.3.10, 0.4.24, 0.5.14, and 0.6.4, a man-in-the-middle attacker can cause Net::IMAP#starttls to return "successfully",...

7 affected packages

ruby2.5, ruby2.3, ruby2.7, ruby3.0, ruby3.2...

Package 16.04 LTS
ruby2.5
ruby2.3 Vulnerable
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Ignored
Show all 7 packages Show less packages

CVE-2026-42245

Medium priority
Ignored

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.4.24, 0.5.14, and 0.6.4, Net::IMAP::ResponseReader has quadratic time complexity when reading large responses...

7 affected packages

ruby2.5, ruby2.3, ruby2.7, ruby3.0, ruby3.2...

Package 16.04 LTS
ruby2.5
ruby2.3 Not affected
ruby2.7
ruby3.0
ruby3.2
ruby3.3
jruby Ignored
Show all 7 packages Show less packages

CVE-2026-42311

Medium priority
Not affected

Pillow is a Python imaging library. From version 10.3.0 to before version 12.2.0, processing a malicious PSD file could lead to memory corruption, potentially resulting in a crash or arbitrary code execution. This issue has been...

2 affected packages

pillow, pillow-python2

Package 16.04 LTS
pillow Not affected
pillow-python2
Show less packages

CVE-2026-42310

Medium priority
Needs evaluation

Pillow is a Python imaging library. From version 4.2.0 to before version 12.2.0, an attacker can supply a malicious PDF that causes the process to hang indefinitely, consuming 100% CPU and making the application unresponsive. This...

2 affected packages

pillow, pillow-python2

Package 16.04 LTS
pillow Needs evaluation
pillow-python2
Show less packages

CVE-2026-42309

Medium priority
Not affected

Pillow is a Python imaging library. From version 11.2.1 to before version 12.2.0, passing nested lists as coordinates to APIs that accept coordinates such as ImagePath.Path, ImageDraw.ImageDraw.polygon and ImageDraw.ImageDraw.line...

2 affected packages

pillow, pillow-python2

Package 16.04 LTS
pillow Not affected
pillow-python2
Show less packages

CVE-2026-42308

Medium priority
Needs evaluation

Pillow is a Python imaging library. Prior to version 12.2.0, if a font advances for each glyph by an exceeding large amount, when Pillow keeps track of the current position, it may lead to an integer overflow. This issue has been...

2 affected packages

pillow, pillow-python2

Package 16.04 LTS
pillow Needs evaluation
pillow-python2
Show less packages