Search CVE reports


Toggle filters

721 – 730 of 38356 results

Status is adjusted based on your filters.


CVE-2025-63261

Low priority
Needs evaluation

AWStats 8.0 is vulnerable to Command Injection via the open function

1 affected package

awstats

Package 20.04 LTS
awstats Needs evaluation
Show less packages

CVE-2026-4438

Medium priority
Needs evaluation

Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C library version 2.34 to version 2.43 could result in an invalid DNS hostname being returned to the...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages

CVE-2026-4437

Medium priority
Needs evaluation

Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C Library version 2.34 to version 2.43 could, with a crafted response from the configured DNS server,...

2 affected packages

glibc, eglibc

Package 20.04 LTS
glibc Needs evaluation
eglibc
Show less packages

CVE-2026-32710

Medium priority
Needs evaluation

MariaDB server is a community developed fork of MySQL server. An authenticated user can crash MariaDB versions 11.4 before 11.4.10 and 11.8 before 11.8.6 via a bug in JSON_SCHEMA_VALID() function. Under certain conditions it might...

5 affected packages

mariadb, mariadb-10.0, mariadb-10.1, mariadb-10.3, mariadb-10.6

Package 20.04 LTS
mariadb
mariadb-10.0
mariadb-10.1
mariadb-10.3 Needs evaluation
mariadb-10.6
Show less packages

CVE-2026-4519

Medium priority
Needs evaluation

The webbrowser.open() API would accept leading dashes in the URL which could be handled as command line options for certain web browsers. New behavior rejects leading dashes. Users are recommended to sanitize URLs prior to passing...

14 affected packages

jython, pypy3, python2.7, python3.4, python3.5...

Package 20.04 LTS
jython Needs evaluation
pypy3 Needs evaluation
python2.7 Needs evaluation
python3.4
python3.5
python3.6
python3.7
python3.8 Needs evaluation
python3.9 Needs evaluation
python3.10
python3.11
python3.12
python3.13
python3.14
Show all 14 packages Show less packages

CVE-2026-32711

Medium priority
Needs evaluation

pydicom is a pure Python package for working with DICOM files. Versions 2.0.0-rc.1 through 3.0.1 are vulnerable to Path Traversal through a maliciously crafted DICOMDIR ReferencedFileID when it is set to a path outside the...

1 affected package

pydicom

Package 20.04 LTS
pydicom Needs evaluation
Show less packages

CVE-2026-3842

Medium priority
Needs evaluation

[Unknown description]

1 affected package

qemu

Package 20.04 LTS
qemu Needs evaluation
Show less packages

CVE-2026-33056

Medium priority
Needs evaluation

tar-rs is a tar archive reading/writing library for Rust. In versions 0.4.44 and below, when unpacking a tar archive, the tar crate's unpack_dir function uses fs::metadata() to check whether a path that already exists is a...

1 affected package

rust-tar

Package 20.04 LTS
rust-tar Needs evaluation
Show less packages

CVE-2026-33055

Medium priority
Needs evaluation

tar-rs is a tar archive reading/writing library for Rust. Versions 0.4.44 and below have conditional logic that skips the PAX size header in cases where the base header size is nonzero. As part of CVE-2025-62518,...

1 affected package

rust-tar

Package 20.04 LTS
rust-tar Needs evaluation
Show less packages

CVE-2026-32935

Medium priority
Needs evaluation

phpseclib is a PHP secure communications library. Projects using versions 1.0.26 and below, 2.0.0 through 2.0.51, and 3.0.0 through 3.0.49 are vulnerable to a to padding oracle timing attack when using AES in CBC mode. This issue...

3 affected packages

php-phpseclib, php-phpseclib3, phpseclib

Package 20.04 LTS
php-phpseclib Needs evaluation
php-phpseclib3
phpseclib Needs evaluation
Show less packages