Search CVE reports


Toggle filters

31 – 40 of 36938 results

Status is adjusted based on your filters.


CVE-2026-38998

Medium priority

Not in release

A use-after-free in the SocketDescriptor::tcpReadHandler1 function (liveMedia/RTPInterface.cpp) of LIVE555 Streaming Media (version 2026.02.26) allows attackers to cause a Denial of Service (DoS) via sending a series of crafted...

1 affected package

liblivemedia

Package 26.04 LTS
liblivemedia Not in release
Show less packages

CVE-2026-25554

Medium priority

Not in release

(OpenSIPS versions 3.1 before 3.6.4 containing the auth_jwt module (pri ...)

1 affected package

opensips

Package 26.04 LTS
opensips Not in release
Show less packages

CVE-2026-22591

Medium priority
Needs evaluation

(eprosima Fast DDS is a C++ implementation of the DDS (Data Distributio ...)

1 affected package

fastdds

Package 26.04 LTS
fastdds Needs evaluation
Show less packages

CVE-2026-22590

Medium priority
Needs evaluation

(eprosima Fast DDS is a C++ implementation of the DDS (Data Distributio ...)

1 affected package

fastdds

Package 26.04 LTS
fastdds Needs evaluation
Show less packages

CVE-2026-19880

Medium priority
Needs evaluation

(Path-traversal vulnerability in QOS.CH Sarl Logback-classic on Java (l ...)

1 affected package

logback

Package 26.04 LTS
logback Needs evaluation
Show less packages

CVE-2026-19503

Medium priority

Not in release

(MongoDB Schema Manager and MongoDB Atlas SQL ODBC Driver do not valida ...)

1 affected package

mongodb

Package 26.04 LTS
mongodb Not in release
Show less packages

CVE-2026-19502

Medium priority

Not in release

(MongoDB SQL Schema Builder CLI records its startup configuration to st ...)

1 affected package

mongodb

Package 26.04 LTS
mongodb Not in release
Show less packages

CVE-2026-19201

Medium priority
Needs evaluation

An uncontrolled recursion vulnerability in the Windows SIPA event log parser of Google go-attestation versions up to and including 0.6.1 allows an attacker to cause a denial of service (DoS). The (*WinEvents).readELAMAggregation...

1 affected package

golang-github-google-go-attestation

Package 26.04 LTS
golang-github-google-go-attestation Needs evaluation
Show less packages

CVE-2026-18495

Medium priority
Needs evaluation

A flaw was found in libtiff. A heap-buffer overflow vulnerability exists in the `tiff2pdf` utility due to an integer truncation error when processing crafted BigTIFF files. An attacker can provide a specially crafted BigTIFF file,...

5 affected packages

tiff, qtwebengine-opensource-src, texmaker, gdal, neuron

Package 26.04 LTS
tiff Needs evaluation
qtwebengine-opensource-src Needs evaluation
texmaker Not affected
gdal Not affected
neuron Not affected
Show less packages

CVE-2026-12611

Medium priority
Needs evaluation

A client may issue HTTP/2 requests to a Jetty server that result in blocking writes that are never unblocked, eventually causing all threads to be blocked and the whole server to become unresponsive. This is caused by a race...

2 affected packages

jetty12, jetty9

Package 26.04 LTS
jetty12 Needs evaluation
jetty9 Needs evaluation
Show less packages