Search CVE reports


Toggle filters

1 – 10 of 36935 results

Status is adjusted based on your filters.


CVE-2026-72708

Medium priority
Needs evaluation

SPIP before 4.4.18 contains an unauthenticated blind SQL injection vulnerability in the public sitemap endpoint where the MySQL escaper spip_mysql_cite() in ecrire/req/mysql.php returns values unescaped when the target column is a...

1 affected package

spip

Package 26.04 LTS
spip Needs evaluation
Show less packages

CVE-2026-68497

Medium priority
Needs evaluation

jackson-databind binds a JSON string to a javax.xml.datatype.Duration or javax.xml.datatype.XMLGregorianCalendar field by passing the raw string verbatim to DatatypeFactory.newDuration(value) or newXMLGregorianCalendar(value) in...

1 affected package

jackson-databind

Package 26.04 LTS
jackson-databind Needs evaluation
Show less packages

CVE-2026-67211

Medium priority
Needs evaluation

OOM Denial of Service via Unbounded Map Pre-Sizing in Apache OpenNLP SymSpellModelSerializer Versions Affected: - 3.0.0-M4 - 3.0.0-M5 (The opennlp-spellcheck extension was introduced in 3.0.0-M4. Releases 1.x and 2.x do not...

1 affected package

apache-opennlp

Package 26.04 LTS
apache-opennlp Needs evaluation
Show less packages

CVE-2026-57229

Medium priority
Needs evaluation

[smtp: evasion due to incomplete state reset]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57228

Medium priority
Not affected

[mime: buffer over read in quoted printable decoding]

1 affected package

suricata

Package 26.04 LTS
suricata Not affected
Show less packages

CVE-2026-57227

Medium priority
Needs evaluation

[mqtt: unbounded number of messages per tx]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57226

Medium priority
Needs evaluation

[detect/file_data: heap buffer overflow in SWF decompression depth handling]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57225

Medium priority
Needs evaluation

[datasets: NULL dereference on unexpected ndjson files]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57224

Medium priority
Needs evaluation

[dhcp: unbounded tx growth with unidirectional traffic]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-57223

Medium priority
Needs evaluation

[windows: unquoted LocalSystem service ImagePath]

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages