Search CVE reports


Toggle filters

991 – 1000 of 50657 results

Status is adjusted based on your filters.


CVE-2026-42284

Medium priority
Ignored

GitPython is a python library used to interact with Git repositories. Prior to version 3.1.47, _clone() validates multi_options as the original list, then executes shlex.split(" ".join(multi_options)). A string like "--branch main...

1 affected package

python-git

Package 16.04 LTS
python-git Ignored
Show less packages

CVE-2026-42215

Medium priority
Ignored

GitPython is a python library used to interact with Git repositories. From version 3.1.30 to before version 3.1.47, GitPython blocks dangerous Git options such as --upload-pack and --receive-pack by default, but the equivalent...

1 affected package

python-git

Package 16.04 LTS
python-git Ignored
Show less packages

CVE-2026-42011

Medium priority
Needs evaluation

A flaw was found in gnutls. This vulnerability occurs because permitted name constraints were incorrectly ignored when previous Certificate Authorities (CAs) only had excluded name constraints. A remote attacker could exploit this...

1 affected package

gnutls28

Package 16.04 LTS
gnutls28 Needs evaluation
Show less packages

CVE-2026-41685

Medium priority
Needs evaluation

Incus is a system container and virtual machine manager. Prior to version 7.0.0, uploads of large amount of data by authenticated users can run the Incus server out of disk space, potentially taking down the host system. The...

2 affected packages

incus, lxd

Package 16.04 LTS
incus
lxd Needs evaluation
Show less packages

CVE-2026-41684

Medium priority
Needs evaluation

Incus is a system container and virtual machine manager. Prior to version 7.0.0, backup.GetInfo() trusts the inline backup/index.yaml config when present and only falls back to parsing the legacy backup/container/backup.yaml file...

2 affected packages

incus, lxd

Package 16.04 LTS
incus
lxd Needs evaluation
Show less packages

CVE-2026-41648

Medium priority
Needs evaluation

Incus is a system container and virtual machine manager. Prior to version 7.0.0, user provided image and backup tarballs would be unpacked and YAML files parsed without any size restrictions. This was making it easy for...

2 affected packages

incus, lxd

Package 16.04 LTS
incus
lxd Needs evaluation
Show less packages

CVE-2026-42010

Medium priority
Needs evaluation

A flaw was found in gnutls. Servers configured with RSA-PSK (Rivest–Shamir–Adleman – Pre-Shared Key) wrongfully matched usernames containing a NUL character with truncated usernames. A remote attacker could exploit this by sending...

1 affected package

gnutls28

Package 16.04 LTS
gnutls28 Needs evaluation
Show less packages

CVE-2026-8086

Medium priority
Ignored

A vulnerability was identified in OSGeo gdal up to 3.13.0dev-4. This issue affects the function SWnentries of the file frmts/hdf4/hdf-eos/SWapi.c. Such manipulation of the argument DimensionName leads to heap-based...

1 affected package

gdal

Package 16.04 LTS
gdal Ignored
Show less packages

CVE-2026-8084

Medium priority
Ignored

A vulnerability was determined in OSGeo gdal up to 3.13.0dev-4. This vulnerability affects the function memmove of the file frmts/hdf4/hdf-eos/SWapi.c of the component HDF-EOS Grid File Handler. This manipulation causes...

1 affected package

gdal

Package 16.04 LTS
gdal Ignored
Show less packages

CVE-2026-8063

Medium priority
Ignored

An authenticated user can crash mongod when running $rankFusion or $scoreFusion with an empty pipeline on a view. When resolving a view, the server inspects the aggregation pipeline to determine whether it begins with an Atlas...

1 affected package

mongodb

Package 16.04 LTS
mongodb Ignored
Show less packages