Search CVE reports


Toggle filters

1 – 10 of 41487 results

Status is adjusted based on your filters.


CVE-2026-26081

Medium priority
Not affected

crash via INITIAL packet for the NEW_TOKEN format

1 affected package

haproxy

Package 18.04 LTS
haproxy Not affected
Show less packages

CVE-2026-26080

Medium priority
Not affected

crash in parsing frame type

1 affected package

haproxy

Package 18.04 LTS
haproxy Not affected
Show less packages

CVE-2025-31648

Low priority
Vulnerable

Improper handling of values in the microcode flow for some Intel(R) Processor Family may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable...

1 affected package

intel-microcode

Package 18.04 LTS
intel-microcode Vulnerable
Show less packages

CVE-2026-26079

Medium priority
Needs evaluation

Roundcube Webmail before 1.5.13 and 1.6 before 1.6.13 allows Cascading Style Sheets (CSS) injection, e.g., because comments are mishandled.

1 affected package

roundcube

Package 18.04 LTS
roundcube Needs evaluation
Show less packages

CVE-2026-25531

Medium priority
Needs evaluation

[Unknown description]

2 affected packages

kanboard-cli, python-kanboard

Package 18.04 LTS
kanboard-cli Needs evaluation
python-kanboard Needs evaluation
Show less packages

CVE-2026-2361

Medium priority
Not affected

PostgreSQL Anonymizer contains a vulnerability that allows a user to gain superuser privileges by creating a temporary view based on a function containing malicious code. When the anon.get_tablesample_ratio function is then...

8 affected packages

postgresql-18, postgresql-17, postgresql-16, postgresql-14, postgresql-12...

Package 18.04 LTS
postgresql-18
postgresql-17
postgresql-16
postgresql-14
postgresql-12
postgresql-10 Not affected
postgresql-9.5
postgresql-9.3
Show all 8 packages Show less packages

CVE-2026-2239

Medium priority
Needs evaluation

[PSD loader: heap-buffer-overflow in fread_pascal_string() (no null terminator)]

1 affected package

gimp

Package 18.04 LTS
gimp Needs evaluation
Show less packages

CVE-2026-1837

High priority
Needs evaluation

A specially-crafted file can cause libjxl's decoder to write pixel data to uninitialized unallocated memory. Soon after that data from another uninitialized unallocated region is copied to pixel data. This can be done by...

1 affected package

graphicsmagick

Package 18.04 LTS
graphicsmagick Needs evaluation
Show less packages

CVE-2025-69871

Medium priority
Needs evaluation

A race condition vulnerability exists in MedusaJS Medusa v2.12.2 and earlier in the registerUsage() function of the promotion module. The function performs a non-atomic read-check-update operation when enforcing promotion usage...

1 affected package

medusa

Package 18.04 LTS
medusa Needs evaluation
Show less packages

CVE-2025-12474

Low priority
Needs evaluation

A specially-crafted file can cause libjxl's decoder to read pixel data from uninitialized (but allocated) memory. This can be done by causing the decoder to reference an outside-image-bound area in a subsequent patches. An...

1 affected package

graphicsmagick

Package 18.04 LTS
graphicsmagick Needs evaluation
Show less packages