Search CVE reports


Toggle filters

31 – 40 of 59834 results

Status is adjusted based on your filters.


CVE-2026-15109

Medium priority
Ignored

security update

6 affected packages

chromium-browser, webkitgtk, webkit2gtk, qtwebkit-source, qtwebkit-opensource-src, wpewebkit

Package 16.04 LTS
chromium-browser —
webkitgtk Ignored
webkit2gtk Ignored
qtwebkit-source Ignored
qtwebkit-opensource-src Ignored
wpewebkit —
Show less packages

CVE-2026-105221

Medium priority
Needs evaluation

(The gist RubyGem before 6.1.0 contains an improper certificate validat ...)

1 affected package

gist

Package 16.04 LTS
gist Needs evaluation
Show less packages

CVE-2026-105083

Medium priority
Needs evaluation

ImageMagick before 7.1.2-32 and 6.9.13-57 contains a policy bypass vulnerability in LoadPolicyCache that silently skips security policy rules when policy.xml uses an alternate DOCTYPE. A valid DOCTYPE not ending in ']>' makes the...

1 affected package

imagemagick

Package 16.04 LTS
imagemagick Needs evaluation
Show less packages

CVE-2026-104988

Medium priority
Needs evaluation

A flaw was found in Dogtag PKI (pki-core). The CMCAuthForEST authentication plugin fails open when an EST fullcmc enrollment request is submitted via BasicAuth without an end-user TLS client certificate. The...

1 affected package

dogtag-pki

Package 16.04 LTS
dogtag-pki Needs evaluation
Show less packages

CVE-2026-104733

Medium priority
Needs evaluation

User Impersonation in ProcessOnes XMMP Server ejabberd <= 26.04 allows an attacker to impersonate arbitrary users via unvalidated authzid parameter in SASL-PLAIN mechanism.

1 affected package

ejabberd

Package 16.04 LTS
ejabberd Needs evaluation
Show less packages

CVE-2026-104721

Medium priority
Needs evaluation

Path-traversal vulnerability in QOS.CH Sarl Logback-classic on Java (logback-classic module) allows path-traversal vulnerability. More specifically, an MDC-based discriminator value flows unsanitized into a nested FileAppender...

1 affected package

logback

Package 16.04 LTS
logback Needs evaluation
Show less packages

CVE-2026-103885

Medium priority
Needs evaluation

Asymmetric Resource Consumption vulnerability in Apache Directory LDAP API. A LDAP server using the LDAP API (like Apache DS) may consume 100% of a CPU core indefinitely when processing some badly crafted Telephone Numbers. This...

1 affected package

apache-directory-api

Package 16.04 LTS
apache-directory-api Needs evaluation
Show less packages

CVE-2026-103880

Medium priority
Needs evaluation

Asymmetric Resource Consumption vulnerability in Apache Directory LDAP API. Storing a password using the bcrypt algorithm with a high force like 30 in a LDAP server that supports this algorithm will cause the server CPU to run for...

1 affected package

apache-directory-api

Package 16.04 LTS
apache-directory-api Needs evaluation
Show less packages

CVE-2026-103878

Medium priority
Needs evaluation

Cleartext transmission of sensitive information vulnerability in Apache Directory LDAP API. A StartTLS extended operation started after a Search request has been sent can lead to receive data in plain text before the TLS Handshake...

1 affected package

apache-directory-api

Package 16.04 LTS
apache-directory-api Needs evaluation
Show less packages

CVE-2026-103877

Medium priority
Needs evaluation

Deserialization of Untrusted Data vulnerability in Apache Directory LDAP API. A rogue/compromised LDAP server (or pre-TLS MITM) can answer a client's loadSchema() subschema search with a schema object that contains a serialized...

1 affected package

apache-directory-api

Package 16.04 LTS
apache-directory-api Needs evaluation
Show less packages