Search CVE reports


Toggle filters

141 – 150 of 37324 results

Status is adjusted based on your filters.


CVE-2026-2436

Medium priority
Needs evaluation

A flaw was found in libsoup's SoupServer. A remote attacker could exploit a use-after-free vulnerability where the `soup_server_disconnect()` function frees connection objects prematurely, even if a TLS handshake is still pending....

2 affected packages

libsoup2.4, libsoup3

Package 22.04 LTS
libsoup2.4 Needs evaluation
libsoup3 Needs evaluation
Show less packages

CVE-2026-4926

Medium priority
Needs evaluation

Impact: A bad regular expression is generated any time you have multiple sequential optional groups (curly brace syntax), such as `{a}{b}{c}:z`. The generated regex grows exponentially with the number of groups, causing denial...

1 affected package

node-path-to-regexp

Package 22.04 LTS
node-path-to-regexp Needs evaluation
Show less packages

CVE-2026-4923

Medium priority
Needs evaluation

Impact: When using multiple wildcards, combined with at least one parameter, a regular expression can be generated that is vulnerable to ReDoS. This backtracking vulnerability requires the second wildcard to be somewhere other...

1 affected package

node-path-to-regexp

Package 22.04 LTS
node-path-to-regexp Needs evaluation
Show less packages

CVE-2026-4867

Medium priority
Not affected

Impact: A bad regular expression is generated any time you have three or more parameters within a single segment, separated by something that is not a period (.). For example, /:a-:b-:c or /:a-:b-:c-:d. The backtrack protection...

1 affected package

node-path-to-regexp

Package 22.04 LTS
node-path-to-regexp Not affected
Show less packages

CVE-2026-33636

Medium priority
Needs evaluation

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.6.36 through 1.6.55, an out-of-bounds read and write exists in libpng's...

5 affected packages

libpng, libpng1.6, firefox, thunderbird, chromium-browser

Package 22.04 LTS
libpng Not in release
libpng1.6 Needs evaluation
firefox Not affected
thunderbird Not affected
chromium-browser Not affected
Show less packages

CVE-2026-33416

Medium priority
Needs evaluation

LIBPNG is a reference library for use in applications that read, create, and manipulate PNG (Portable Network Graphics) raster image files. In versions 1.2.1 through 1.6.55, `png_set_tRNS` and `png_set_PLTE` each alias a...

5 affected packages

libpng, libpng1.6, firefox, thunderbird, chromium-browser

Package 22.04 LTS
libpng Not in release
libpng1.6 Needs evaluation
firefox Not affected
thunderbird Not affected
chromium-browser Not affected
Show less packages

CVE-2026-4897

Medium priority
Needs evaluation

A flaw was found in polkit. A local user can exploit this by providing a specially crafted, excessively long input to the `polkit-agent-helper-1` setuid binary via standard input (stdin). This unbounded input can lead to an...

1 affected package

policykit-1

Package 22.04 LTS
policykit-1 Needs evaluation
Show less packages

CVE-2026-33413

Medium priority
Needs evaluation

etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.4.42, 3.5.28, and 3.6.9, unauthorized users may bypass authentication or authorization checks and call certain etcd functions...

1 affected package

etcd

Package 22.04 LTS
etcd Needs evaluation
Show less packages

CVE-2026-33343

Medium priority
Needs evaluation

etcd is a distributed key-value store for the data of a distributed system. Prior to versions 3.4.42, 3.5.28, and 3.6.9, an authenticated user with RBAC restricted permissions on key ranges can use nested transactions to bypass...

1 affected package

etcd

Package 22.04 LTS
etcd Needs evaluation
Show less packages

CVE-2026-4887

Medium priority
Needs evaluation

A flaw was found in GIMP. This issue is a heap buffer over-read in GIMP PCX file loader due to an off-by-one error. A remote attacker could exploit this by convincing a user to open a specially crafted PCX image....

1 affected package

gimp

Package 22.04 LTS
gimp Needs evaluation
Show less packages