Search CVE reports


Toggle filters

1 – 10 of 37432 results

Status is adjusted based on your filters.


CVE-2026-90783

Medium priority
Needs evaluation

(MKVToolNix through 101.0 contains a heap buffer overflow in the bundle ...)

1 affected package

mkvtoolnix

Package 26.04 LTS
mkvtoolnix Needs evaluation
Show less packages

CVE-2026-90781

Medium priority
Needs evaluation

(alsa-lib through 1.2.16.1 contains a stack buffer overflow in the __sn ...)

1 affected package

alsa-lib

Package 26.04 LTS
alsa-lib Needs evaluation
Show less packages

CVE-2026-90776

Medium priority
Needs evaluation

(Nodemailer versions 9.1.0 through 10.0.4 contain a quadratic time comp ...)

1 affected package

node-nodemailer

Package 26.04 LTS
node-nodemailer Needs evaluation
Show less packages

CVE-2026-90775

Medium priority

Not in release

(PostGIS address_standardizer through 3.7.0 fails to validate the Weigh ...)

1 affected package

address-standardizer

Package 26.04 LTS
address-standardizer Not in release
Show less packages

CVE-2026-90773

Medium priority
Needs evaluation

(procs through 0.14.12 fails to sanitize escape sequences in process co ...)

1 affected package

rust-procs

Package 26.04 LTS
rust-procs Needs evaluation
Show less packages

CVE-2026-90678

Medium priority
Needs evaluation

An issue was discovered in HAProxy 3.3.0 through 3.4.4 and in 3.5-dev1 through 3.5-dev5. Exploitation requires an HTTP/3 frontend: HAProxy must be built with QUIC support and configured with a QUIC bind listener, and the affected...

1 affected package

haproxy

Package 26.04 LTS
haproxy Needs evaluation
Show less packages

CVE-2026-90648

Medium priority
Needs evaluation

wasm2c in WebAssembly wabt through 1.0.41 allows sandbox escape in some situations that primarily involve 32-bit platforms, aka a "table flip" attack. It does not check the return value of calloc()...

1 affected package

wabt

Package 26.04 LTS
wabt Needs evaluation
Show less packages

CVE-2026-90616

Medium priority
Needs evaluation

In Flatpak before 1.18.1, a malicious sandboxed app can obtain arbitrary read and write access to files on the host, which can be escalated to arbitrary code execution on the host, a different vulnerability than CVE-2026-76925....

1 affected package

flatpak

Package 26.04 LTS
flatpak Needs evaluation
Show less packages

CVE-2026-90578

Medium priority

Not in release

(A flaw has been found in GPAC up to f1219cde. Affected by this issue i ...)

1 affected package

gpac

Package 26.04 LTS
gpac Not in release
Show less packages

CVE-2026-90577

Medium priority

Not in release

(A vulnerability was detected in GPAC up to f1219cde. Affected by this ...)

1 affected package

gpac

Package 26.04 LTS
gpac Not in release
Show less packages