Search CVE reports


Toggle filters

11 – 20 of 47411 results

Status is adjusted based on your filters.


CVE-2026-2243

Medium priority
Needs evaluation

A flaw was found in QEMU. A specially crafted VMDK image could trigger an out-of-bounds read vulnerability, potentially leading to a 12-byte leak of sensitive information or a denial of service condition (DoS).

1 affected package

qemu

Package 16.04 LTS
qemu Needs evaluation
Show less packages

CVE-2025-71244

Medium priority
Needs evaluation

SPIP before 4.4.5 and 4.3.9 allows an Open Redirect via the login form when used in AJAX mode. An attacker can craft a malicious URL that, when visited by a victim, redirects them to an arbitrary external site after login....

1 affected package

spip

Package 16.04 LTS
spip Needs evaluation
Show less packages

CVE-2025-71242

Medium priority
Needs evaluation

SPIP before 4.3.6, 4.2.17, and 4.1.20 allows unauthorized content disclosure in the private area. The application does not properly check authorization when displaying content of articles and sections (rubriques) in AJAX-loaded...

1 affected package

spip

Package 16.04 LTS
spip Needs evaluation
Show less packages

CVE-2025-71241

Medium priority
Needs evaluation

SPIP before 4.3.6, 4.2.17, and 4.1.20 allows Cross-Site Scripting (XSS) in the private area. The content of the error message displayed by the 'transmettre' API is not properly sanitized, allowing an attacker to inject malicious...

1 affected package

spip

Package 16.04 LTS
spip Needs evaluation
Show less packages

CVE-2025-71240

Medium priority
Needs evaluation

SPIP before 4.2.15 allows Cross-Site Scripting (XSS) via crafted content in HTML code tags. The application does not properly verify JavaScript within code tags, allowing an attacker to inject malicious scripts that execute in a...

1 affected package

spip

Package 16.04 LTS
spip Needs evaluation
Show less packages

CVE-2026-27171

Low priority
Vulnerable

zlib before 1.3.2 allows CPU consumption via crc32_combine64 and crc32_combine_gen64 because x2nmodp can do right shifts within a loop that has no termination condition.

4 affected packages

zlib, rsync, klibc, zsync

Package 16.04 LTS
zlib Needs evaluation
rsync Vulnerable
klibc Needs evaluation
zsync Needs evaluation
Show less packages

CVE-2026-2653

Medium priority
Needs evaluation

A security flaw has been discovered in admesh up to 0.98.5. This issue affects the function stl_check_normal_vector of the file src/normals.c. Performing a manipulation results in heap-based buffer overflow. The attack must be...

1 affected package

admesh

Package 16.04 LTS
admesh Needs evaluation
Show less packages

CVE-2026-2644

Medium priority
Needs evaluation

A weakness has been identified in niklasso minisat up to 2.2.0. This issue affects the function Solver::value in the library core/SolverTypes.h of the component DIMACS File Parser. This manipulation of the argument variable index...

1 affected package

minisat2

Package 16.04 LTS
minisat2 Needs evaluation
Show less packages

CVE-2026-25500

Medium priority
Vulnerable

Rack is a modular Ruby web server interface. Prior to versions 2.2.22, 3.1.20, and 3.2.5, `Rack::Directory` generates an HTML directory index where each file entry is rendered as a clickable link. If a file exists on disk whose...

1 affected package

ruby-rack

Package 16.04 LTS
ruby-rack Vulnerable
Show less packages

CVE-2026-23230

Medium priority
Needs evaluation

In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open, has_lease and on_list are stored in the same bitfield byte in struct cached_fid...

154 affected packages

linux, linux-hwe, linux-hwe-5.4, linux-hwe-5.8, linux-hwe-5.11...

Package 16.04 LTS
linux Needs evaluation
linux-hwe Needs evaluation
linux-hwe-5.4
linux-hwe-5.8
linux-hwe-5.11
linux-hwe-5.13
linux-hwe-5.15
linux-hwe-5.19
linux-hwe-6.2
linux-hwe-6.5
linux-hwe-6.8
linux-hwe-6.11
linux-hwe-6.14
linux-hwe-edge Ignored
linux-lts-xenial
linux-kvm Needs evaluation
linux-allwinner-5.19
linux-aws Needs evaluation
linux-aws-5.0
linux-aws-5.3
linux-aws-5.4
linux-aws-5.8
linux-aws-5.11
linux-aws-5.13
linux-aws-5.15
linux-aws-5.19
linux-aws-6.2
linux-aws-6.5
linux-aws-6.8
linux-aws-6.14
linux-aws-hwe Needs evaluation
linux-azure Needs evaluation
linux-azure-4.15
linux-azure-5.3
linux-azure-5.4
linux-azure-5.8
linux-azure-5.11
linux-azure-5.13
linux-azure-5.15
linux-azure-5.19
linux-azure-6.2
linux-azure-6.5
linux-azure-6.8
linux-azure-6.11
linux-azure-6.14
linux-azure-fde
linux-azure-fde-5.15
linux-azure-fde-5.19
linux-azure-fde-6.2
linux-azure-fde-6.8
linux-azure-fde-6.14
linux-azure-nvidia
linux-azure-nvidia-6.14
linux-bluefield
linux-azure-edge
linux-fips Needs evaluation
linux-aws-fips
linux-azure-fips
linux-gcp-fips
linux-gcp Needs evaluation
linux-gcp-4.15
linux-gcp-5.3
linux-gcp-5.4
linux-gcp-5.8
linux-gcp-5.11
linux-gcp-5.13
linux-gcp-5.15
linux-gcp-5.19
linux-gcp-6.2
linux-gcp-6.5
linux-gcp-6.8
linux-gcp-6.11
linux-gcp-6.14
linux-gke
linux-gke-4.15
linux-gke-5.4
linux-gke-5.15
linux-gkeop
linux-gkeop-5.4
linux-gkeop-5.15
linux-ibm
linux-ibm-5.4
linux-ibm-5.15
linux-ibm-6.8
linux-intel-5.13
linux-intel-iotg
linux-intel-iotg-5.15
linux-iot
linux-intel-iot-realtime
linux-lowlatency
linux-lowlatency-hwe-5.15
linux-lowlatency-hwe-5.19
linux-lowlatency-hwe-6.2
linux-lowlatency-hwe-6.5
linux-lowlatency-hwe-6.8
linux-lowlatency-hwe-6.11
linux-nvidia
linux-nvidia-6.2
linux-nvidia-6.5
linux-nvidia-6.8
linux-nvidia-6.11
linux-nvidia-lowlatency
linux-nvidia-tegra
linux-nvidia-tegra-5.15
linux-nvidia-tegra-igx
linux-oracle Needs evaluation
linux-oracle-5.0
linux-oracle-5.3
linux-oracle-5.4
linux-oracle-5.8
linux-oracle-5.11
linux-oracle-5.13
linux-oracle-5.15
linux-oracle-6.5
linux-oracle-6.8
linux-oracle-6.14
linux-oem
linux-oem-5.6
linux-oem-5.10
linux-oem-5.13
linux-oem-5.14
linux-oem-5.17
linux-oem-6.0
linux-oem-6.1
linux-oem-6.5
linux-oem-6.8
linux-oem-6.11
linux-oem-6.14
linux-oem-6.17
linux-raspi
linux-raspi2
linux-raspi-5.4
linux-raspi-realtime
linux-realtime
linux-realtime-6.8
linux-realtime-6.14
linux-riscv
linux-riscv-5.8
linux-riscv-5.11
linux-riscv-5.15
linux-riscv-5.19
linux-riscv-6.5
linux-riscv-6.8
linux-riscv-6.14
linux-starfive-5.19
linux-starfive-6.2
linux-starfive-6.5
linux-xilinx
linux-xilinx-zynqmp
linux-aws-6.17 Not in release
linux-gcp-6.17 Not in release
linux-hwe-6.17 Not in release
linux-oracle-6.17 Not in release
linux-riscv-6.17 Not in release
Show all 154 packages Show less packages