Search CVE reports


Toggle filters

1 – 10 of 36930 results

Status is adjusted based on your filters.


CVE-2026-25918

Medium priority
Needs evaluation

unity-cli is a command line utility for the Unity Game Engine. Prior to 1.8.2 , the sign-package command in @rage-against-the-pixel/unity-cli logs sensitive credentials in plaintext when the --verbose flag is used. Command-line...

1 affected package

unity

Package 20.04 LTS
unity Needs evaluation
Show less packages

CVE-2026-25916

Medium priority
Needs evaluation

Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13, when "Block remote images" is used, does not block SVG feImage.

1 affected package

roundcube

Package 20.04 LTS
roundcube Needs evaluation
Show less packages

CVE-2026-25892

Medium priority
Needs evaluation

Adminer is open-source database management software. Adminer v5.4.1 and earlier has a version check mechanism where adminer.org sends signed version info via JavaScript postMessage, which the browser then POSTs to ?script=version....

1 affected package

adminer

Package 20.04 LTS
adminer Needs evaluation
Show less packages

CVE-2026-25765

Medium priority
Needs evaluation

Faraday is an HTTP client library abstraction layer that provides a common interface over many adapters. Prior to 2.14.1, Faraday's build_exclusive_url method (in lib/faraday/connection.rb) uses Ruby's URI#merge to combine the...

1 affected package

ruby-faraday

Package 20.04 LTS
ruby-faraday Needs evaluation
Show less packages

CVE-2026-24027

Medium priority
Needs evaluation

Crafted zones can lead to increased incoming network traffic.

1 affected package

pdns-recursor

Package 20.04 LTS
pdns-recursor Needs evaluation
Show less packages

CVE-2026-23948

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to 3.22.0, a NULL pointer dereference vulnerability in rdp_write_logon_info_v2() allows a malicious RDP server to crash FreeRDP proxy by sending a specially...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages

CVE-2026-23903

Medium priority
Needs evaluation

Authentication Bypass by Alternate Name vulnerability in Apache Shiro. This issue affects Apache Shiro: before 2.0.7. Users are recommended to upgrade to version 2.0.7, which fixes the issue. The issue only effects static files....

1 affected package

shiro

Package 20.04 LTS
shiro Needs evaluation
Show less packages

CVE-2026-23901

Medium priority
Needs evaluation

[shiro: Brute force attack possible to determine valid user names]

1 affected package

shiro

Package 20.04 LTS
shiro Needs evaluation
Show less packages

CVE-2026-2245

Medium priority
Needs evaluation

A vulnerability was identified in CCExtractor up to 183. This affects the function parse_PAT/parse_PMT in the library src/lib_ccx/ts_tables.c of the component MPEG-TS File Parser. Such manipulation leads to out-of-bounds read. The...

1 affected package

ccextractor

Package 20.04 LTS
ccextractor Needs evaluation
Show less packages

CVE-2026-1584

High priority
Needs evaluation

[Unknown description]

1 affected package

gnutls28

Package 20.04 LTS
gnutls28 Needs evaluation
Show less packages