Search CVE reports


Toggle filters

741 – 750 of 52578 results

Status is adjusted based on your filters.


CVE-2026-54634

Medium priority
Needs evaluation

Hamlib is a ham radio control library for radios, rotators, and amplifiers. Prior to 4.7.2, the unauthenticated rigctld send_raw command on TCP port 4532 reaches rigctl_send_raw() in tests/rigctl_parse.c, which writes a NUL byte...

1 affected package

hamlib

Package 22.04 LTS
hamlib Needs evaluation
Show less packages

CVE-2026-54633

Medium priority
Needs evaluation

PoDoFo is a C++17 PDF manipulation library. From version 1.0.0 until 1.1.1, processing a crafted PDF with an Indexed color-space image can cause a heap out-of-bounds read in PdfColorSpaceFilterIndexed::FetchScanLine...

1 affected package

libpodofo

Package 22.04 LTS
libpodofo Needs evaluation
Show less packages

CVE-2026-53534

Medium priority
Needs evaluation

JabRef is a desktop application for managing BibTeX and BibLaTeX libraries. Prior to 6.0-alpha.6, when jabsrv or JabRef's built-in HTTP server is enabled, the GET /better-bibtex/cayw endpoint accepts an external command query...

1 affected package

jabref

Package 22.04 LTS
jabref Needs evaluation
Show less packages

CVE-2026-50291

Medium priority
Needs evaluation

OpenImageIO is a toolset for reading, writing, and manipulating image files of any image file format relevant to VFX / animation. Prior to versions 3.0.16.0 and 3.1.11.0, processing a crafted BMP file through oiiotool or...

1 affected package

openimageio

Package 22.04 LTS
openimageio Needs evaluation
Show less packages

CVE-2026-93395

Medium priority
Needs evaluation

A missing lower-bound validation in the bson_new_from_buffer() function of libbson allows an integer underflow when processing BSON data with a zero-length prefix. The function reads a 32-bit document length from the input buffer...

1 affected package

mongo-c-driver

Package 22.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-93394

Medium priority
Needs evaluation

A flaw in libmongoc's SCRAM authentication implementation caused the client to continue the authentication handshake and transmit the client proof even when a nonce mismatch was detected in the server's first message....

1 affected package

mongo-c-driver

Package 22.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-93393

Medium priority
Needs evaluation

A heap-based buffer overflow exists in the TLS transport layer of the MongoDB C Driver when built with the Windows platform TLS backend. A remote endpoint that the client connects to can cause the driver to write uncontrolled data...

1 affected package

mongo-c-driver

Package 22.04 LTS
mongo-c-driver Needs evaluation
Show less packages

CVE-2026-93387

Medium priority
Not affected

Improper state validation in Skia in Google Chrome prior to 153.0.8010.52 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)

1 affected package

chromium-browser

Package 22.04 LTS
chromium-browser Not affected
Show less packages

CVE-2026-93386

Medium priority
Not affected

UI misrepresentation in WebAppInstalls in Google Chrome prior to 153.0.8010.52 allowed a remote attacker leveraging social engineering to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)

1 affected package

chromium-browser

Package 22.04 LTS
chromium-browser Not affected
Show less packages

CVE-2026-93385

Medium priority
Not affected

Information leak in Paint in Google Chrome prior to 153.0.8010.52 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

1 affected package

chromium-browser

Package 22.04 LTS
chromium-browser Not affected
Show less packages