Search CVE reports


Toggle filters

621 – 630 of 37500 results

Status is adjusted based on your filters.


CVE-2026-87107

Medium priority

Not in release

(Consul and Consul Enterprise are vulnerable to an authorization bypass ...)

1 affected package

consul

Package 26.04 LTS
consul Not in release
Show less packages

CVE-2026-87090

Medium priority

Not in release

(Consul and Consul Enterprise are vulnerable to an authorization bypass ...)

1 affected package

consul

Package 26.04 LTS
consul Not in release
Show less packages

CVE-2026-84828

Medium priority
Vulnerable

A flaw was found in PCS (Pacemaker Configuration System). A local attacker with membership in the 'haclient' group can exploit the 'pcs host auth --token' command to read the contents of arbitrary files on the filesystem, provided...

1 affected package

pcs

Package 26.04 LTS
pcs Vulnerable
Show less packages

CVE-2026-79590

Medium priority
Needs evaluation

A NULL pointer dereference vulnerability exists in the Prism parser component of mruby 4.0.0. An attacker can provide a specially crafted Ruby source file that triggers the parser to pass a NULL pointer to nonnull string handling...

1 affected package

mruby

Package 26.04 LTS
mruby Needs evaluation
Show less packages

CVE-2026-49838

Medium priority
Needs evaluation

GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. Prior to version 4.7.0, GoBGP accepts a zero-length AS_PATH during UPDATE decoding and later panics while validating that...

1 affected package

gobgp

Package 26.04 LTS
gobgp Needs evaluation
Show less packages

CVE-2026-49837

Medium priority
Needs evaluation

GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. Versions prior to 4.6.0 contain a BGP OPEN capability parsing issue where several concrete capability decoders may parse data...

1 affected package

gobgp

Package 26.04 LTS
gobgp Needs evaluation
Show less packages

CVE-2026-49836

Medium priority
Needs evaluation

psd-tools is a Python package for working with Adobe Photoshop PSD files. Prior to version 1.17.1, `SmartObject.save()` writes an embedded smart object to a path taken verbatim from the PSD file. Because that name...

1 affected package

psd-tools

Package 26.04 LTS
psd-tools Needs evaluation
Show less packages

CVE-2026-45770

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, a Lua rule that registers too many flow variables can...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-45769

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5,IKEv2 parser state could grow without bounds while storing client transforms....

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages

CVE-2026-45768

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, LDAP transaction state could store an unbounded number of...

1 affected package

suricata

Package 26.04 LTS
suricata Needs evaluation
Show less packages