Search CVE reports


Toggle filters

1131 – 1140 of 42826 results

Status is adjusted based on your filters.


CVE-2026-21620

Low priority
Needs evaluation

Relative Path Traversal, Improper Isolation or Compartmentalization vulnerability in erlang otp erlang/otp (tftp_file modules), erlang otp inets (tftp_file modules), erlang otp tftp (tftp_file modules) allows Relative Path...

1 affected package

erlang

Package 18.04 LTS
erlang Needs evaluation
Show less packages

CVE-2026-2739

Medium priority
Needs evaluation

This affects versions of the package bn.js before 5.2.3. Calling maskn(0) on any BN instance corrupts the internal state, causing toString(), divmod(), and other methods to enter an infinite loop, hanging the process indefinitely.

1 affected package

node-bn.js

Package 18.04 LTS
node-bn.js Needs evaluation
Show less packages

CVE-2026-26996

Medium priority
Needs evaluation

minimatch is a minimal matching utility for converting glob expressions into JavaScript RegExp objects. Versions 10.2.0 and below are vulnerable to Regular Expression Denial of Service (ReDoS) when a glob pattern contains many...

1 affected package

node-minimatch

Package 18.04 LTS
node-minimatch Needs evaluation
Show less packages

CVE-2026-26960

Medium priority
Needs evaluation

node-tar is a full-featured Tar for Node.js. When using default options in versions 7.5.7 and below, an attacker-controlled archive can create a hardlink inside the extraction directory that points to a file outside the extraction...

1 affected package

node-tar

Package 18.04 LTS
node-tar Needs evaluation
Show less packages

CVE-2026-26065

Medium priority
Needs evaluation

calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Versions 9.2.1 and below are vulnerable to Path Traversal through PDB readers (both 132-byte and 202-byte header variants) that...

1 affected package

calibre

Package 18.04 LTS
calibre Needs evaluation
Show less packages

CVE-2026-26064

Medium priority
Needs evaluation

calibre is a cross-platform e-book manager for viewing, converting, editing, and cataloging e-books. Versions 9.2.1 and below contain a Path Traversal vulnerability that allows arbitrary file writes anywhere the user has write...

1 affected package

calibre

Package 18.04 LTS
calibre Needs evaluation
Show less packages

CVE-2026-26967

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library written in C. In versions 2.16 and below, there is a critical Heap-based Buffer Overflow vulnerability in PJSIP's H.264 unpacketizer. The bug occurs when processing...

1 affected package

pjproject

Package 18.04 LTS
pjproject Vulnerable
Show less packages

CVE-2026-26203

Medium priority
Vulnerable

PJSIP is a free and open source multimedia communication library. Versions prior to 2.17 have a critical heap buffer underflow vulnerability in PJSIP's H.264 packetizer. The bug occurs when processing malformed H.264 bitstreams...

1 affected package

pjproject

Package 18.04 LTS
pjproject Vulnerable
Show less packages

CVE-2026-26200

Medium priority
Needs evaluation

HDF5 is software for managing data. Prior to version 1.14.4-2, an attacker who can control an `h5` file parsed by HDF5 can trigger a write-based heap buffer overflow condition. This can lead to a denial-of-service condition, and...

1 affected package

hdf5

Package 18.04 LTS
hdf5 Needs evaluation
Show less packages

CVE-2026-27475

Medium priority
Needs evaluation

SPIP before 4.4.9 allows Insecure Deserialization in the public area through the table_valeur filter and the DATA iterator, which accept serialized data. An attacker who can place malicious serialized content (a pre-condition...

1 affected package

spip

Package 18.04 LTS
spip Needs evaluation
Show less packages