Search CVE reports


Toggle filters

11 – 20 of 52625 results

Status is adjusted based on your filters.


CVE-2026-13379

Medium priority
Needs evaluation

The Windows interactive service in OpenVPN 2.7_alpha1 through 2.7.4 allows remote attackers to cause persistent DNS state pollution or a service crash via a crafted search domain during the disconnection process

1 affected package

openvpn

Package 16.04 LTS
openvpn Needs evaluation
Show less packages

CVE-2026-17544

Medium priority
Needs evaluation

Attacker-provided inputs to bccomp() could lead to an out-of-bounds write with stack and heap corruption in PHP versions from 8.4.* before 8.4.24 and from 8.5.* before 8.5.9.

7 affected packages

php5, php7.0, php7.2, php7.4, php8.1...

Package 16.04 LTS
php5
php7.0 Needs evaluation
php7.2
php7.4
php8.1
php8.3
php8.5
Show all 7 packages Show less packages

CVE-2026-17543

Medium priority
Needs evaluation

Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.

7 affected packages

php5, php7.0, php7.2, php7.4, php8.1...

Package 16.04 LTS
php5
php7.0 Needs evaluation
php7.2
php7.4
php8.1
php8.3
php8.5
Show all 7 packages Show less packages

CVE-2026-18220

Medium priority
Needs evaluation

An out-of-bounds write vulnerability was found in the BFD library's DLX ELF backend (bfd/elf32-dlx.c) in GNU binutils. The dlx_rtype_to_howto() function maps ELF relocation types to internal howto structures but fails to perform...

1 affected package

binutils

Package 16.04 LTS
binutils Needs evaluation
Show less packages

CVE-2026-16313

Medium priority
Needs evaluation

A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a...

1 affected package

sg3-utils

Package 16.04 LTS
sg3-utils Needs evaluation
Show less packages

CVE-2026-6879

Medium priority
Needs evaluation

`Element.findall()` and fully-consumed `Element.iterfind()` exhibit `O(n^2)` time complexity when using XPath index predicates (e.g. `[1]`, `[last()]`, `[last()-N]`) on XML documents with many same-tag siblings. `Element.find()`...

12 affected packages

pypy3, python2.7, python3.4, python3.5, python3.6...

Package 16.04 LTS
pypy3
python2.7 Needs evaluation
python3.4
python3.5 Needs evaluation
python3.6
python3.7
python3.8
python3.9
python3.10
python3.11
python3.12
python3.14
Show all 12 packages Show less packages

CVE-2026-66299

Medium priority
Needs evaluation

Uncontrolled Resource Consumption vulnerability in Apache Tomcat's WebSocket chat example. This issue affects Apache Tomcat: from 11.0.0-M20 through 11.0.24, from 10.1.24 through 10.1.57, from 9.0.89 through 9.0.120. Users who...

6 affected packages

tomcat6, tomcat7, tomcat8, tomcat9, tomcat10, tomcat11

Package 16.04 LTS
tomcat6
tomcat7
tomcat8 Needs evaluation
tomcat9
tomcat10
tomcat11
Show less packages

CVE-2026-62436

Medium priority
Needs evaluation

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] With the introduction of Grant Table v2 came the requirement to be able to switch between versions. ...

1 affected package

xen

Package 16.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-62435

Medium priority
Needs evaluation

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] With the introduction of Grant Table v2 came the requirement to be able to switch between versions. ...

1 affected package

xen

Package 16.04 LTS
xen Needs evaluation
Show less packages

CVE-2026-62434

Medium priority
Needs evaluation

A guest started with Populated on Demand enabled (PoD) can attempt to reclaim pages which aren't regular guest RAM. This can cause corruption of memory management state in Xen.

1 affected package

xen

Package 16.04 LTS
xen Needs evaluation
Show less packages