Search CVE reports


Toggle filters

1491 – 1500 of 45614 results

Status is adjusted based on your filters.


CVE-2026-44916

Medium priority
Needs evaluation

In OpenStack Ironic before 35.0.2 (in a certain non-default configuration), instance_info['ks_template'] is rendered without sandboxing.

1 affected package

ironic

Package 18.04 LTS
ironic Needs evaluation
Show less packages

CVE-2026-42150

Medium priority
Needs evaluation

wlc is a Weblate command-line client using Weblate's REST API. Prior to version 2.0.0, the HTML output format in wlc embeds API response data into HTML without escaping, allowing cross-site scripting when the output is rendered in...

1 affected package

wlc

Package 18.04 LTS
wlc Needs evaluation
Show less packages

CVE-2026-8124

Medium priority
Needs evaluation

A security vulnerability has been detected in GPAC up to 26.02.0. This affects the function sidx_box_read of the file src/isomedia/box_code_base.c. The manipulation leads to allocation of resources. The attack must be carried out...

1 affected package

gpac

Package 18.04 LTS
gpac Needs evaluation
Show less packages

CVE-2026-43284

High priority

Some fixes available 14 of 17

In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can attach pages from a pipe directly to an skb. TCP marks such skbs with SKBFL_SHARED_FRAG...

158 affected packages

linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11, linux-hwe-5.13...

Package 18.04 LTS
linux-hwe Ignored
linux-hwe-5.4 Fixed
linux-hwe-5.8 Not in release
linux-hwe-5.11 Not in release
linux-hwe-5.13 Not in release
linux-hwe-5.15 Not in release
linux-hwe-5.19 Not in release
linux-hwe-6.2 Not in release
linux-hwe-6.5 Not in release
linux-hwe-6.8 Not in release
linux-hwe-6.11 Not in release
linux-hwe-6.14 Not in release
linux-hwe-6.17 Not in release
linux-hwe-edge Ignored
linux-lts-xenial Not in release
linux-kvm Fixed
linux-allwinner-5.19 Not in release
linux-aws-5.0 Ignored
linux-aws-5.3 Ignored
linux-aws-5.4 Fixed
linux-aws-5.8 Not in release
linux-aws-5.11 Not in release
linux-aws-5.13 Not in release
linux-aws-5.15 Not in release
linux-aws-5.19 Not in release
linux-aws-6.2 Not in release
linux-aws-6.5 Not in release
linux-aws-6.8 Not in release
linux-aws-6.14 Not in release
linux-aws-6.17 Not in release
linux-aws-hwe Not in release
linux-azure-4.15 Fixed
linux-azure-5.3 Ignored
linux-azure-5.4 Fixed
linux-azure-5.8 Not in release
linux-azure-5.11 Not in release
linux-azure-5.13 Not in release
linux-azure-5.15 Not in release
linux-azure-5.19 Not in release
linux-azure-6.2 Not in release
linux-azure-6.5 Not in release
linux-azure-6.8 Not in release
linux-azure-6.11 Not in release
linux-azure-6.14 Not in release
linux-azure-6.17 Not in release
linux-azure-fde-5.15 Not in release
linux-azure-fde-5.19 Not in release
linux-azure-fde-6.2 Not in release
linux-azure-fde-6.8 Not in release
linux-azure-fde-6.14 Not in release
linux-azure-fde-6.17 Not in release
linux-azure-nvidia Not in release
linux-azure-nvidia-6.14 Not in release
linux-bluefield Not in release
linux-azure-edge Ignored
linux-fips Fixed
linux-aws-fips Vulnerable
linux-azure-fips Fixed
linux-gcp-fips Fixed
linux-gcp-4.15 Fixed
linux-gcp-5.3 Ignored
linux-gcp-5.4 Fixed
linux-gcp-5.8 Not in release
linux-gcp-5.11 Not in release
linux-gcp-5.13 Not in release
linux-gcp-5.15 Not in release
linux-gcp-5.19 Not in release
linux-gcp-6.2 Not in release
linux-gcp-6.5 Not in release
linux-gcp-6.8 Not in release
linux-gcp-6.11 Not in release
linux-gcp-6.14 Not in release
linux-gcp-6.17 Not in release
linux-gke Not in release
linux-gke-4.15 Ignored
linux-gke-5.4 Ignored
linux-gke-5.15 Not in release
linux-gkeop Not in release
linux-gkeop-5.4 Ignored
linux-gkeop-5.15 Not in release
linux-ibm Not in release
linux-ibm-5.4 Vulnerable
linux-ibm-5.15 Not in release
linux-ibm-6.8 Not in release
linux-intel-5.13 Not in release
linux-intel-iotg Not in release
linux-intel-iotg-5.15 Not in release
linux-iot Not in release
linux-intel-iot-realtime Not in release
linux-lowlatency Not in release
linux-lowlatency-hwe-5.15 Not in release
linux-lowlatency-hwe-5.19 Not in release
linux-lowlatency-hwe-6.2 Not in release
linux-lowlatency-hwe-6.5 Not in release
linux-lowlatency-hwe-6.8 Not in release
linux-lowlatency-hwe-6.11 Not in release
linux-nvidia Not in release
linux-nvidia-6.2 Not in release
linux-nvidia-6.5 Not in release
linux-nvidia-6.8 Not in release
linux-nvidia-6.11 Not in release
linux-nvidia-lowlatency Not in release
linux-nvidia-tegra Not in release
linux-nvidia-tegra-5.15 Not in release
linux-nvidia-tegra-igx Not in release
linux-oracle-5.0 Ignored
linux-oracle-5.3 Ignored
linux-oracle-5.4 Fixed
linux-oracle-5.8 Not in release
linux-oracle-5.11 Not in release
linux-oracle-5.13 Not in release
linux-oracle-5.15 Not in release
linux-oracle-6.5 Not in release
linux-oracle-6.8 Not in release
linux-oracle-6.14 Not in release
linux-oracle-6.17 Not in release
linux-oem Ignored
linux-oem-5.6 Not in release
linux-oem-5.10 Not in release
linux-oem-5.13 Not in release
linux-oem-5.14 Not in release
linux-oem-5.17 Not in release
linux-oem-6.0 Not in release
linux-oem-6.1 Not in release
linux-oem-6.5 Not in release
linux-oem-6.8 Not in release
linux-oem-6.11 Not in release
linux-oem-6.14 Not in release
linux-oem-6.17 Not in release
linux-raspi2 Ignored
linux-raspi-5.4 Fixed
linux-raspi-realtime Not in release
linux-realtime-6.8 Not in release
linux-realtime-6.14 Not in release
linux-riscv Not in release
linux-riscv-5.8 Not in release
linux-riscv-5.11 Not in release
linux-riscv-5.15 Not in release
linux-riscv-5.19 Not in release
linux-riscv-6.5 Not in release
linux-riscv-6.8 Not in release
linux-riscv-6.14 Not in release
linux-riscv-6.17 Not in release
linux-starfive-5.19 Not in release
linux-starfive-6.2 Not in release
linux-starfive-6.5 Not in release
linux-xilinx Not in release
linux-xilinx-zynqmp Not in release
linux-realtime-6.17 Not in release
linux-azure Ignored
linux-azure-fde Not in release
linux-gcp Ignored
linux-oracle Fixed
linux-raspi Not in release
linux-realtime Not in release
linux Fixed
linux-aws Vulnerable
linux-nvidia-6.17 Not in release
Show all 158 packages Show less packages

CVE-2026-8088

Medium priority
Needs evaluation

A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi.c. Executing a manipulation can lead to out-of-bounds read. The attack needs to...

1 affected package

gdal

Package 18.04 LTS
gdal Needs evaluation
Show less packages

CVE-2026-8087

Medium priority
Needs evaluation

A security flaw has been discovered in OSGeo gdal up to 3.13.0dev-4. Impacted is the function GDnentries of the file frmts/hdf4/hdf-eos/GDapi.c. Performing a manipulation of the argument DataFieldName results in heap-based buffer...

1 affected package

gdal

Package 18.04 LTS
gdal Needs evaluation
Show less packages

CVE-2026-42501

Medium priority
Needs evaluation

A malicious module proxy can exploit a flaw in the go command's validation of module checksums to bypass checksum database validation. This vulnerability affects any user using an untrusted module proxy (GOMODPROXY) or checksum...

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 18.04 LTS
golang
golang-1.6
golang-1.8 Needs evaluation
golang-1.9 Needs evaluation
golang-1.10 Needs evaluation
golang-1.13 Needs evaluation
golang-1.14
golang-1.16 Needs evaluation
golang-1.17
golang-1.18 Needs evaluation
golang-1.20
golang-1.21
golang-1.22
golang-1.23
golang-1.24
golang-1.25
Show all 16 packages Show less packages

CVE-2026-42499

Medium priority
Needs evaluation

Pathological inputs could cause DoS through consumePhrase when parsing an email address according to RFC 5322.

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 18.04 LTS
golang
golang-1.6
golang-1.8 Needs evaluation
golang-1.9 Needs evaluation
golang-1.10 Needs evaluation
golang-1.13 Needs evaluation
golang-1.14
golang-1.16 Needs evaluation
golang-1.17
golang-1.18 Needs evaluation
golang-1.20
golang-1.21
golang-1.22
golang-1.23
golang-1.24
golang-1.25
Show all 16 packages Show less packages

CVE-2026-42225

Medium priority
Needs evaluation

PJSIP is a free and open source multimedia communication library written in C. Prior to version 2.17, on GnuTLS builds, the SIP TLS transport (sip_transport_tls) can accept connections with invalid or untrusted certificates even...

2 affected packages

asterisk, pjproject

Package 18.04 LTS
asterisk Needs evaluation
pjproject Needs evaluation
Show less packages

CVE-2026-39836

Medium priority
Not affected

The Dial and LookupPort functions panic on Windows when provided with an input containing a NUL (0).

16 affected packages

golang-1.10, golang-1.13, golang-1.14, golang-1.16, golang-1.17...

Package 18.04 LTS
golang-1.10 Not affected
golang-1.13 Not affected
golang-1.14
golang-1.16 Not affected
golang-1.17
golang-1.18 Not affected
golang-1.20
golang-1.21
golang-1.22
golang-1.23
golang-1.24
golang-1.25
golang-1.6
golang-1.8 Not affected
golang-1.9 Not affected
golang
Show all 16 packages Show less packages