Search CVE reports


Toggle filters

161 – 170 of 50531 results

Status is adjusted based on your filters.


CVE-2026-102967

Medium priority
Needs evaluation

[Unknown description]

1 affected package

mediawiki

Package 20.04 LTS
mediawiki Needs evaluation
Show less packages

CVE-2026-102966

Medium priority
Needs evaluation

[Unknown description]

1 affected package

mediawiki

Package 20.04 LTS
mediawiki Needs evaluation
Show less packages

CVE-2026-102505

Medium priority
Needs evaluation

Imager versions before 1.037 for Perl overflow a heap buffer fetching float samples from a paletted image in i_gsampf_fp. For a paletted image, getsamples() with type "float" allocates a buffer of one sample per pixel and fetches...

1 affected package

libimager-perl

Package 20.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-102504

Medium priority
Needs evaluation

Imager versions before 1.037 for Perl exit the process reading a raw image with an out-of-range raw_datachannels value in i_readraw_wiol. Nothing range-checks raw_datachannels. The line buffer is sized as the image width times the...

1 affected package

libimager-perl

Package 20.04 LTS
libimager-perl Needs evaluation
Show less packages

CVE-2026-101283

Medium priority
Needs evaluation

iperf3 3.20–3.21 (esnet/iperf) has a pre-auth heap buffer overflow in decrypt_rsa_message(): a 256-byte RSA buffer is BIO_read with the attacker-controlled ciphertext length (guard warns only), so an unauthenticated client...

1 affected package

iperf3

Package 20.04 LTS
iperf3 Needs evaluation
Show less packages

CVE-2026-101276

Medium priority
Needs evaluation

iperf3 3.21 (esnet/iperf) contains a remote, unauthenticated heap use-after-free: the server's per-test watchdog server_timer_proc() frees streams without cancelling/joining their worker threads, so a blocked worker dereferences a...

1 affected package

iperf3

Package 20.04 LTS
iperf3 Needs evaluation
Show less packages

CVE-2026-103111

Medium priority
Needs evaluation

PCRE2 before 10.49, when there is an attacker-controlled regular expression and certain JIT API usage, allows an out-of-bounds write with arbitrary data.

1 affected package

pcre2

Package 20.04 LTS
pcre2 Needs evaluation
Show less packages

CVE-2026-102805

Medium priority
Needs evaluation

A flaw has been found in Nothings stb up to 1.16. This affects the function stbi_write_png_to_mem/stbi_write_jpg_core/stbi_write_tga_core in the library stb_image_write.h of the component Image Encoding. Executing a manipulation...

1 affected package

libstb

Package 20.04 LTS
libstb Needs evaluation
Show less packages

CVE-2026-102804

Medium priority
Needs evaluation

A vulnerability was detected in Nothings stb up to 2c980bb59875b0d32144a71867fbdebb2f77cd20. The impacted element is the function hexwave_init in the library stb_hexwave.h. Performing a manipulation of the argument...

1 affected package

libstb

Package 20.04 LTS
libstb Needs evaluation
Show less packages

CVE-2026-103051

Medium priority
Needs evaluation

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - CentralNotice extension allows Stored XSS. This issue affects Mediawiki - CentralNotice...

1 affected package

mediawiki

Package 20.04 LTS
mediawiki Needs evaluation
Show less packages