Search CVE reports


Toggle filters

481 – 490 of 42343 results

Status is adjusted based on your filters.


CVE-2026-45103

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions prior to 3.6.6 and 4.0.0-rc1, the TCP message framing layer parses the Content-Length header using unsigned int arithmetic with no overflow check....

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45100

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0-beta through 3.6.5 and 4.0.0-beta contain a buffer overflow in the {s.b64encode} string transformation. The size check for {s.b64encode} only...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-45084

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. Versions 3.4.0 through 3.6.5 contain a denial of service vulnerability in the presence module. When the presence module's handle_publish() function processes a...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-51401

Medium priority
Vulnerable

An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

1 affected package

vim

Package 24.04 LTS
vim Vulnerable
Show less packages

CVE-2026-51400

Medium priority
Vulnerable

An issue in Vim Project v9.2.0389 and earlier allows a local attacker to execute arbitrary code via the vms_fixfilename() function within file vim/src/os_vms.c

1 affected package

vim

Package 24.04 LTS
vim Vulnerable
Show less packages

CVE-2026-45538

Medium priority

Not in release

OpenSIPS is a Session Initiation Protocol (SIP) server implementation. In versions 4.0.0 and prior, processing a SIP message with a header name longer than 255 bytes causes a stack buffer overflow when sip_to_json() is called in...

1 affected package

opensips

Package 24.04 LTS
opensips Not in release
Show less packages

CVE-2026-68743

Medium priority
Needs evaluation

A flaw was found in SSSD. The extract_authtok_v1() function in the PAM responder does not validate the auth_token_length field against the remaining buffer size before processing. A local attacker can exploit this via a crafted...

1 affected package

sssd

Package 24.04 LTS
sssd Needs evaluation
Show less packages

CVE-2026-47781

Medium priority

Not in release

PDM is a Python package and dependency manager. In versions up to and including 2.26.9, PDM automatically loads project-local plugins from a .pdm-plugins directory during initialization, allowing an attacker-controlled file in an...

1 affected package

pdm

Package 24.04 LTS
pdm Not in release
Show less packages

CVE-2026-47764

Medium priority

Not in release

pdm is a Python package and dependency manager supporting the latest PEP standards. Versions prior to 2.27.0 are vulnerable to path traversal through write_to_fs. InstallDestination.write_to_fs()...

1 affected package

pdm

Package 24.04 LTS
pdm Not in release
Show less packages

CVE-2026-47763

Medium priority

Not in release

pdm is a Python package and dependency manager supporting the latest PEP standards. In versions prior to 2.27.0, pdm writes several project-local state or configuration files without symlink protection. If a malicious repository...

1 affected package

pdm

Package 24.04 LTS
pdm Not in release
Show less packages