Search CVE reports


Toggle filters

2271 – 2280 of 48458 results

Status is adjusted based on your filters.


CVE-2026-64783

Medium priority
Ignored

A use-after-free issue was addressed with improved memory management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing maliciously crafted web content may lead...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-64757

Medium priority
Ignored

A memory corruption issue was addressed with improved state management. This issue is fixed in Safari 26.6, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6, watchOS 26.6. Processing...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-64730

Medium priority
Ignored

The issue was addressed with improved UI. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Visiting a website that frames malicious content may lead to UI spoofing.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-64728

Medium priority
Ignored

A permissions issue was addressed with improved validation. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Maliciously crafted web content may violate iframe...

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-64719

Medium priority
Ignored

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6, iOS 18.7.10 and iPadOS 18.7.10, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6....

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-64713

Medium priority
Ignored

This issue was addressed with improved checks. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, watchOS 26.6. Websites may know if the user has visited a given link.

5 affected packages

webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 20.04 LTS
webkitgtk
webkit2gtk Ignored
qtwebkit-source
qtwebkit-opensource-src Ignored
wpewebkit Ignored
Show less packages

CVE-2026-63385

Medium priority
Fixed

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has two HTTP parsing weaknesses in http.c. evhttp_decode_uri_internal decodes percent-encoded %00 bytes into literal NUL characters, which can...

1 affected package

libevent

Package 20.04 LTS
libevent Fixed
Show less packages

CVE-2026-63384

Medium priority
Fixed

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent has an incorrect integer conversion in event_tagging.c when evtag_unmarshal_header uses evtag_decode_int to decode an attacker-controlled uint32...

1 affected package

libevent

Package 20.04 LTS
libevent Fixed
Show less packages

CVE-2026-63383

Medium priority
Fixed

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, libevent can read beyond a contiguous evbuffer region in event_tagging.c when decode_tag_internal requests at most five bytes from evbuffer_pullup but...

1 affected package

libevent

Package 20.04 LTS
libevent Fixed
Show less packages

CVE-2026-63382

Medium priority
Fixed

Libevent is an event notification library. Prior to 2.1.13 and 2.2.2-alpha, the libevent evhttp parser in http.c inconsistently handles duplicate Transfer-Encoding headers, comma-separated Transfer-Encoding values, and bare line...

1 affected package

libevent

Package 20.04 LTS
libevent Fixed
Show less packages