Search CVE reports


Toggle filters

1851 – 1860 of 47985 results

Status is adjusted based on your filters.


CVE-2026-72854

Medium priority
Needs evaluation

msgpack_unpacker_expand_buffer in src/unpack.c, reached through the public msgpack_unpacker_reserve_buffer API, computes its new buffer size using an unchecked size_t addition of the requested size and the amount already used. The...

1 affected package

msgpack-c

Package 20.04 LTS
msgpack-c Needs evaluation
Show less packages

CVE-2026-53583

Medium priority
Needs evaluation

libgit2 is a portable C implementation of the Git core methods provided as a linkable library with a solid API, allowing to build Git functionality into your application. Prior to 1.8.6 and 1.9.5, verify_server_cert...

1 affected package

libgit2

Package 20.04 LTS
libgit2 Needs evaluation
Show less packages

CVE-2026-15743

Medium priority
Needs evaluation

Catalyst::Plugin::Static::Simple versions through 0.38 for Perl mark responses as publicly cacheable. The _serve_static method always sets the Cache-Control header to "public", with no means of overriding it. This advises proxies...

1 affected package

libcatalyst-plugin-static-simple-perl

Package 20.04 LTS
libcatalyst-plugin-static-simple-perl Needs evaluation
Show less packages

CVE-2026-76641

Medium priority
Vulnerable

Expat through 2.8.3 contains an out-of-bounds read vulnerability that allows attackers to trigger memory corruption by processing XML with external entity parsers created via XML_ExternalEntityParserCreate. A struct size mismatch...

23 affected packages

expat, apache2, apr-util, cmake, ghostscript...

Package 20.04 LTS
expat Vulnerable
apache2 Not affected
apr-util Not affected
cmake Not affected
ghostscript Not affected
texlive-bin Not affected
xmlrpc-c Needs evaluation
vnc4
wbxml2 Needs evaluation
swish-e Needs evaluation
insighttoolkit4 Needs evaluation
cadaver Needs evaluation
gdcm Not affected
ayttm
cableswig
coin3 Not affected
matanza Ignored
tdom Needs evaluation
vtk
smart
firefox
thunderbird
libxmltok Needs evaluation
Show all 23 packages Show less packages

CVE-2026-63495

Medium priority
Needs evaluation

Libevent is an event notification library. From 2.2.0-alpha-dev until 2.2.2-alpha, the libevent WebSocket server in ws.c accumulates fragmented frames in evws->incomplete_frames without enforcing a total message-size limit. An...

1 affected package

libevent

Package 20.04 LTS
libevent Needs evaluation
Show less packages

CVE-2026-63388

Medium priority
Needs evaluation

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has a heap out-of-bounds write in bufferevent_sock.c when bufferevent_socket_set_conn_address_ copies a kernel-supplied AF_UNIX peer address into...

1 affected package

libevent

Package 20.04 LTS
libevent Needs evaluation
Show less packages

CVE-2026-63387

Medium priority
Needs evaluation

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an off-by-one stack buffer overflow in evdns.c when dnsname_to_labels formats a name-bearing DNS record at the end of the 64 KB stack buffer...

1 affected package

libevent

Package 20.04 LTS
libevent Needs evaluation
Show less packages

CVE-2026-63380

Medium priority
Needs evaluation

Libevent is an event notification library. Prior to 2.2.2-alpha, libevent can dereference invalid list pointers in ws.c when evws_new_session enters its error path after evhttp_start_ws_ succeeds but bufferevent_enable_locking_...

1 affected package

libevent

Package 20.04 LTS
libevent Needs evaluation
Show less packages

CVE-2026-63379

Medium priority
Needs evaluation

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent processes chunked HTTP trailers in http.c through evhttp_read_trailer and merges them into request headers. The fix introduces...

1 affected package

libevent

Package 20.04 LTS
libevent Needs evaluation
Show less packages

CVE-2026-18309

Medium priority
Needs evaluation

GIMP APNG File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GIMP. User interaction is required to exploit this...

1 affected package

gimp

Package 20.04 LTS
gimp Needs evaluation
Show less packages