Search CVE reports


Toggle filters

91 – 100 of 31948 results

Status is adjusted based on your filters.


CVE-2026-1998

Medium priority
Needs evaluation

A flaw has been found in micropython up to 1.27.0. This vulnerability affects the function mp_import_all of the file py/runtime.c. This manipulation causes memory corruption. The attack needs to be launched locally. The exploit...

1 affected package

micropython

Package 24.04 LTS
micropython Needs evaluation
Show less packages

CVE-2026-1991

Medium priority
Needs evaluation

A vulnerability was detected in libuvc up to 0.0.7. Affected is the function uvc_scan_streaming of the file src/device.c of the component UVC Descriptor Handler. The manipulation results in null pointer dereference. The attack...

1 affected package

libuvc

Package 24.04 LTS
libuvc Needs evaluation
Show less packages

CVE-2026-1979

Medium priority
Needs evaluation

A flaw has been found in mruby up to 3.4.0. This affects the function mrb_vm_exec of the file src/vm.c of the component JMPNOT-to-JMPIF Optimization. Executing a manipulation can lead to use after free. The attack needs to be...

1 affected package

mruby

Package 24.04 LTS
mruby Needs evaluation
Show less packages

CVE-2025-68458

Medium priority
Needs evaluation

Webpack is a module bundler. From version 5.49.0 to before 5.104.1, when experiments.buildHttp is enabled, webpack’s HTTP(S) resolver (HttpUriPlugin) can be bypassed to fetch resources from hosts outside allowedUris by using...

1 affected package

node-webpack

Package 24.04 LTS
node-webpack Needs evaluation
Show less packages

CVE-2025-68157

Medium priority
Needs evaluation

Webpack is a module bundler. From version 5.49.0 to before 5.104.0, when experiments.buildHttp is enabled, webpack’s HTTP(S) resolver (HttpUriPlugin) enforces allowedUris only for the initial URL, but does not re-validate...

1 affected package

node-webpack

Package 24.04 LTS
node-webpack Needs evaluation
Show less packages

CVE-2025-68121

Medium priority
Needs evaluation

During session resumption in crypto/tls, if the underlying Config has its ClientCAs or RootCAs fields mutated between the initial handshake and the resumed handshake, the resumed handshake may succeed when it should have failed....

16 affected packages

golang, golang-1.6, golang-1.8, golang-1.9, golang-1.10...

Package 24.04 LTS
golang Not in release
golang-1.6 Not in release
golang-1.8 Not in release
golang-1.9 Not in release
golang-1.10 Not in release
golang-1.13 Not in release
golang-1.14 Not in release
golang-1.16 Not in release
golang-1.17 Not in release
golang-1.18 Not in release
golang-1.20 Not in release
golang-1.21 Needs evaluation
golang-1.22 Needs evaluation
golang-1.23 Needs evaluation
golang-1.24 Not in release
golang-1.25 Not in release
Show all 16 packages Show less packages

CVE-2025-58190

Medium priority
Needs evaluation

The html.Parse function in golang.org/x/net/html has an infinite parsing loop when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.

7 affected packages

golang-golang-x-net, google-guest-agent, containerd, golang-golang-x-net-dev, adsys...

Package 24.04 LTS
golang-golang-x-net Needs evaluation
google-guest-agent Not affected
containerd Not affected
golang-golang-x-net-dev Not in release
adsys Not affected
juju-core Not in release
lxd Not in release
Show all 7 packages Show less packages

CVE-2025-47911

Medium priority
Needs evaluation

The html.Parse function in golang.org/x/net/html has quadratic parsing complexity when processing certain inputs, which can lead to denial of service (DoS) if an attacker provides specially crafted HTML content.

7 affected packages

golang-golang-x-net, google-guest-agent, containerd, golang-golang-x-net-dev, adsys...

Package 24.04 LTS
golang-golang-x-net Needs evaluation
google-guest-agent Not affected
containerd Not affected
golang-golang-x-net-dev Not in release
adsys Not affected
juju-core Not in release
lxd Not in release
Show all 7 packages Show less packages

CVE-2020-37127

Low priority
Not affected

Dnsmasq-utils 2.79-1 contains a buffer overflow vulnerability in the dhcp_release utility that allows attackers to cause a denial of service by supplying excessive input. Attackers can trigger a core dump and terminate the...

1 affected package

dnsmasq

Package 24.04 LTS
dnsmasq Not affected
Show less packages

CVE-2020-37121

Medium priority
Needs evaluation

CODE::BLOCKS 16.01 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by overwriting Structured Exception Handler with crafted Unicode characters. Attackers can create a malicious M3U playlist...

1 affected package

codeblocks

Package 24.04 LTS
codeblocks Needs evaluation
Show less packages